[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: [gna-private] [SECURITY] [DSA 987-1] New tar packages fix arbitrary code execution



Le Mercredi 8 Mars 2006 10:17, Steve Kemp a écrit :
> On Wed, Mar 08, 2006 at 09:41:39AM +0100, Mathieu Roy wrote:
> > > Package        : tar
> > > Vulnerability  : buffer overflow
> > > Problem-Type   : local(remote)
> >
> > What does mean
> > 	local(remote)
> >
> > Does it means local... or remote?
>
>   Local.  But remote in the sense that you may receive a .tar file
>  from a remote source.
>

Ok, thanks for the input. 

Looks like oxymoron, a bit confusing though (but I have no proposal for 
alternative wording).



-- 
Mathieu Roy

  +
  | Thalie  : <http://yeupou.coleumes.org/> 
  | Clio    : <http://clio.coleumes.org/>       
  | Euterpe : <http://crap.is.free.fr/>
  |           <http://kromaniaks.coleumes.org/>
  +-----------------------------------------------------------+



Reply to: