[Full-disclosure] Blogger bug?

Eric Chien ecchien at gmail.com
Mon Oct 9 12:03:42 BST 2006


On 10/9/06, Peter Dawson <slash.pd at gmail.com> wrote:
>
>  Host Overflow Application eXception vulnerability is in the wild – any
> blog that supports RSS and MetaWeblogAPI can be h4x0red.
>
> We don't have confirmed vectors yet for this incident
>

The Host Overflow Application eXception thing appears to be a HOAX (follow
the capital letters).  See
http://www.symantec.com/enterprise/security_response/weblog/2006/10/host_overflow_application_exce.html
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.grok.org.uk/pipermail/full-disclosure/attachments/20061009/310e698c/attachment.html 


Full-Disclosure is hosted and sponsored by Secunia.