NIS library code exposure (Unix network exposure)

cort cort at ecn.purdue.edu
Wed Sep 27 23:13:18 PDT 1995


[....]

> Do you have any daemons that run as root and do networking? Are you
> sure that all of them check the length of the host name before passing
> it to gethostbyname?

[....]

On Linux:
ping [huge host name] works
ftp [huge host name] works
finger [huge host name] works
nslookup [huge host name] ... CRUNCH (Segmentation fault)





More information about the cypherpunks-legacy mailing list