oss-sec mailing list archives

Re: Exploitability of the integer overflows in djbdns 1.05?


From: Georgi Guninski <gguninski () gmail com>
Date: Tue, 2 Jun 2020 09:56:41 +0300

On Mon, Jun 1, 2020 at 3:02 PM Solar Designer <solar () openwall com> wrote:

On Mon, Jun 01, 2020 at 09:24:21AM +0300, Georgi Guninski wrote:
Exploitability of the integer overflows in djbdns 1.05?

TLDR: Are the integer overflows in djbdns 1.05 exploitable?

https://en.wikipedia.org/wiki/Betteridge%27s_law_of_headlines

"Betteridge's law of headlines is an adage that states: "Any headline
that ends in a question mark can be answered by the word no"."

I'm sure you didn't mean it that way, but the truth in my joke is that
we should actually research the question and provide an informed answer.
Will you, please?  Thanks!

Alexander

Not sure if this is a joke:

Q: Why security people answer question with question?
A: Why not?


Current thread: