Vulnerability Development mailing list archives

Re: Buffer overflow in awk


From: Jose Nazario <jose () biocserver BIOC cwru edu>
Date: Mon, 18 Mar 2002 09:30:19 -0500 (EST)

On Sat, 16 Mar 2002, zero wrote:

OpenBSD 3.0

openbsd uses nawk, aka "new awk" from the original bell labs team.

http://www.openbsd.org/cgi-bin/cvsweb/src/usr.bin/awk/README?rev=1.4&content-type=text/x-cvsweb-markup

they'e independent implementation (gawk and nawk). not a big surprise
they're not vulnerable to the same overflow.

____________________________
jose nazario                                                 jose () cwru edu
                     PGP: 89 B0 81 DA 5B FD 7E 00  99 C3 B2 CD 48 A0 07 80
                                       PGP key ID 0xFD37F4E5 (pgp.mit.edu)


Current thread: