Full Disclosure mailing list archives
Re: python <= 2.5.1 standart librairy multiples int overflow, heap overflow in imageop module
From: "Slythers Bro" <slythers () gmail com>
Date: Sun, 16 Sep 2007 16:14:40 +0200
yeah that's right. Maybe the real question is, if they don't know how secure an int overflow in imageop module, maybe other modules are vulns too. I think nobody really take the time to audit python source code, when i found the vuln in ten minutes just for proof to a friend that's python isn't more secure than php. The python' source code look like old. So old == potential vulns
_______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/
Current thread:
- python <= 2.5.1 standart librairy multiples int overflow, heap overflow in imageop module Slythers Bro (Sep 15)
- Re: python <= 2.5.1 standart librairy multiples int overflow, heap overflow in imageop module Andrew Farmer (Sep 16)
- Re: python <= 2.5.1 standart librairy multiples int overflow, heap overflow in imageop module Slythers Bro (Sep 16)
- Re: python <= 2.5.1 standart librairy multiples int overflow, heap overflow in imageop module Andrew Farmer (Sep 16)