Firewall Wizards mailing list archives

Re: Buffer Overruns


From: "Marcus J. Ranum" <mjr () nfr net>
Date: Fri, 17 Dec 1999 16:15:40 -0500


 Can these buffer overrun bugs penetrate firewalls?

Buffer overruns in proxy firewalls can be pretty lethal, if
they allow the bad guys to take over the proxy. They're not
very hazardous to network-layer firewalls, since those tend
to treat packets as abstract data not application traffic.

One of the proxy firewalls I wrote a while back has had some
pretty wicked buffer overruns. :(

mjr.

--
Marcus J. Ranum, CEO, Network Flight Recorder, Inc.
work - http://www.nfr.net
home - http://www.clark.net/pub/mjr



Current thread: