Closed gy741 closed 7 years ago
Thank you for this one as well! Confirmed, 4-byte write. Out of curiosity, are you running a fuzzer or other tool?
@jan-wassenberg
Yes.
I am working to make a open source secure.
I know this project is in the initial stages of research.
Is it okay to look for bug?
Thanks.
We will read all bug reports, and we will try to react to bugs like the ones you have reported. Reports like this are helpful.
This is fixed in the latest version.
@szabadka What version was impacted, and what is the latest version? No releases under this project so far.
I meant the latest commit. We are not planning any releases yet, since the project is still in an initial research stage.
Hi.
I found a heap-buffer-overflow bug in pik.
Please confirm.
Thanks.
Summary: heap-buffer-overflow Browser/OS: Ubuntu 17.04 64bit Steps to reproduce: 1.Download the .POC files. 2.Execute the following command : ./dpik $PoC /dev/null PoC download : PoC or PoC2