On 10/9/06, <b class="gmail_sendername">Peter Dawson</b> <<a href="mailto:slash.pd@gmail.com">slash.pd@gmail.com</a>> wrote:<div><span class="gmail_quote"></span><blockquote class="gmail_quote" style="border-left: 1px solid rgb(204, 204, 204); margin: 0pt 0pt 0pt 0.8ex; padding-left: 1ex;">
<div> Host Overflow Application eXception vulnerability is in the wild – any blog that supports RSS and MetaWeblogAPI can be h4x0red. </div>
<div> </div>
<div>We don't have confirmed vectors yet for this incident <br></div></blockquote></div><br>The Host Overflow Application eXception thing appears to be a HOAX (follow the capital letters). See <a href="http://www.symantec.com/enterprise/security_response/weblog/2006/10/host_overflow_application_exce.html">
http://www.symantec.com/enterprise/security_response/weblog/2006/10/host_overflow_application_exce.html</a><br>