Vulnerability Development mailing list archives

Sun Sep 9 01:46:40 2001 GMT


From: Ríkharður Egilsson <Rikhardur.EGILSSON () oecd org>
Date: Wed, 29 Aug 2001 11:03:30 +0200


Has anybody done any research in what production systems (web, mail-
servers, OSes etc) might have a problem at :

perl -e 'print localtime(1000000000) . "\n";'

The only thing I have found, so far, is this (old) version of KMail :
http://dot.kde.org/985599243/

The whole issue, and the absense of any discussion, looks like either,

        (1) A disaster just waiting to happen or

        (2) A non-problem.

Personally my wote is for (2).

For vulnerable systems, there might be a problem if the system accepts
dates from users and a user enters a date after September 9th 2001.
(buffer overflow ?)

-- 
 Ríkharður Egilsson - Networking/Security EXD/ITN/CCO
 OECD/OCDE - Organisation for Economic Co-operation and Development


Current thread: