Pantek Library
Hosting Provided By
CybrHost
High Speed Hosting

Re: strcpy bug

From: Dave Korn <davek_throwaway(at)hotmail.com>
Date: Tue Jun 10 2003 - 08:13:05 EDT

>From: xenophi1e <oliver.lavery@sympatico.ca>
>Date: 7 Jun 2003 18:34:59 -0000
> >
> >The windows "Search for files and folders" utility will search binaries

It's a quick and dirty hack, that's why I like it :) Of course it won't find linkages that are only specified by function ordinal, so you get false negatives.

>Yeah, another obvious problem I realised after posting is that MAX_PATH

Heh, as I found out also when trying to create a .eot file with an overly long name!

>There's some protection since applications that are well

The question is, can we get any application to try and LZOpenFileA a file without first performing a check-for-existence test? I haven't managed to fool IE or OE yet with any of the usual MIME / CID: tricks....

      DaveK



Find a cheaper internet access deal - choose one to suit you. http://www.msn.co.uk/internetaccess Received on Tue Jun 10 16:40:31 2003
Do you need help?X

This archive was generated by hypermail 2.1.8 : Wed Aug 23 2006 - 14:07:40 EDT


Contact Us  Legal Notices  Order Services Online 
Pantek Home  Privacy Policy  IT news  Site Map  Pantek Library