Bugtraq mailing list archives

Re: SMS handling OpenSER remote code executing


From: bogdan () voice-system ro
Date: 4 Jan 2007 15:34:54 -0000

Thanks for report. I just applied an fix for both the latest stable version (1.1.0) and the development version (1.2.0).

Not sure if code injection is possible as the maximum overflow is of 5 bytes, guess not long enough to encode an 
instruction.

Regards,
Bogdan


Current thread: