oss-sec mailing list archives

Re: GNU ed heap overflow


From: "Steven M. Christey" <coley () linus mitre org>
Date: Thu, 4 Sep 2008 13:07:36 -0400 (EDT)


On Mon, 1 Sep 2008, Florian Weimer wrote:

Interesting.  But this type of command execution is not possible with
"red", which suffers from the same overflow.

Does red share the same codebase as ed?  Or is a separate CVE necessary?

- Steve


Current thread: