[Full-disclosure] [FDSA] Multiple Vulnerabilities in Your Computer (all versions)

2008-01-15 Thread Fredrick Diggle
### Fredrick Diggle Security Advisory Application: Your Computer Versions: All Versions Affected Platforms: All Platforms Affected Bugs: Buffer Overflows Severity: Xtreme Date: 15 Jan 2008

Re: [Full-disclosure] [FDSA] Multiple Vulnerabilities in Your Computer (all versions)

2008-01-15 Thread 3APA3A
Well, I cant' say it's all fake... It's all junk. FD OpenSSL 0.9.7j FD openssl-0.9.7j/fips-1.0/aes/fips_aesavs.c 973: User supplied data FD copied into fixed length buffer on the stack with no length FD verification. Buffer overflow in non-suid test application (not compiled by default).