[Full-disclosure] python <= 2.5.1 standart librairy multiples int overflow, heap overflow in imageop module

Slythers Bro slythers at gmail.com
Sun Sep 16 15:14:40 BST 2007


yeah that's right.

Maybe the real question is, if they don't know how secure an int overflow in
imageop module, maybe other modules are vulns too.
I think nobody really take the time to audit python source code, when i
found the vuln in ten minutes just for proof to a friend that's python isn't
more secure than php.
The python' source code look like old. So old == potential vulns
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.grok.org.uk/pipermail/full-disclosure/attachments/20070916/82eb8941/attachment.html 


Full-Disclosure is hosted and sponsored by Secunia.