Page 1 of 1

This Just In

Posted: Thu May 24, 2007 11:27 pm
by Slappy Da Clown
You may be interested in the following

A vulnerability in Notepad++ was found this month, capable of executing
arbitrary code on vulnerable systems. The software flaw is due to a
boundary error in a third party library used by Notepad++.

An attacker could exploit this vulnerability by creating a specially
crafted Ruby source file (with the .rb extension), which could cause a
stack-based buffer overflow.

This vulnerability is rated by Secunia as highly critical because an
attacker could use this flaw to gain access to a vulnerable system.
An update has been released for this vulnerability, and users are
encouraged to patch their systems.

For more information:
http://secunia.com/advisories/25245/



Cheers All

Re: This Just In

Posted: Fri May 25, 2007 12:16 am
by Warll
Slappy Da Clown wrote: which could cause a stack-based buffer overflow.
No not the "Stacked based buffer overflow" hack!