[gupnp] Re: Security issue in gupnp xml parser



Hi,

On Fri, May 15, 2009 at 12:25 PM, Jean Sigwald
<jean sigwald orange-ftgroup com> wrote:
> Hi,
>
> We are security researchers working at Orange Labs. Our area of research
> is focused on vulnerability research thanks to fuzzing techniques.
>
> We discovered a reliable remotely triggerable denial-of-service issue on the
> latest stable
> release of gupnp (0.12.7).

   Thanks for your efforts. Any kind of contribution is always welcomed. :)

> The issue is related with SOAP XML parsing.
> Please let me know what kind of information you need in order to
> investigate the issue.

   As a starter, we would like to know what issue exactly it is that you found.

-- 
Regards,

Zeeshan Ali (Khattak)
FSF member#5124
--
To unsubscribe send a mail to gupnp+unsubscribe\@o-hand.com



[Date Prev][Date Next]   [Thread Prev][Thread Next]   [Thread Index] [Date Index] [Author Index]