Full Disclosure mailing list archives
Re: Mozilla Firefox "Host:" Buffer Overflow Exploit
From: Aviv Raff <avivra () gmail com>
Date: Sun, 11 Sep 2005 15:13:41 -0700
my mozilla bugs are wide open in bugzilla. afaik her m4j3sty mitchell's bounties does not require silence.
Sorry, but security issues involved in the bug-bounty program are not publicly available until the patch is released. And even then Mozilla team sometimes waits few more weeks (e.g. http://www.mozilla.org/security/announce/mfsa2005-56.html) before they give access to everyone. I guess you need to read the bug-bounty guidelines again: http://www.mozilla.org/security/bug-bounty.html "...be sure to check the box near the bottom of the entry form that marks this bug report as confidential..." Aviv.
_______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/
Current thread:
- Mozilla Firefox "Host:" Buffer Overflow Exploit Berend-Jan Wever (Sep 10)
- Re: Mozilla Firefox "Host:" Buffer Overflow Exploit Przemyslaw Frasunek (Sep 10)
- Re: Mozilla Firefox "Host:" Buffer Overflow Exploit Paul (Sep 10)
- Re: Mozilla Firefox "Host:" Buffer Overflow Exploit Georgi Guninski (Sep 11)
- Re: Mozilla Firefox "Host:" Buffer Overflow Exploit Steve Friedl (Sep 11)
- Re: Mozilla Firefox "Host:" Buffer Overflow Exploit Georgi Guninski (Sep 11)
- <Possible follow-ups>
- RE: Mozilla Firefox "Host:" Buffer Overflow Exploit Peter Kruse (Sep 11)
- Re: Mozilla Firefox "Host:" Buffer Overflow Exploit Aviv Raff (Sep 11)
- Re: Mozilla Firefox "Host:" Buffer Overflow Exploit Georgi Guninski (Sep 11)
- Re: Mozilla Firefox "Host:" Buffer Overflow Exploit Aviv Raff (Sep 11)
- Message not available
- Re: Mozilla Firefox "Host:" Buffer Overflow Exploit Ill will (Sep 11)
- Re: Mozilla Firefox "Host:" Buffer Overflow Exploit Daniel Veditz (Sep 13)
- RE: Mozilla Firefox "Host:" Buffer Overflow Exploit Larry Seltzer (Sep 14)