https://plus.google.com/+JeroenPluimers/posts/7BR9vNKFUvv

https://plus.google.com/+JeroenPluimers/posts/7BR9vNKFUvv

Comments

  1. The link you point to explicitly says Interbase is not vulnerable...

    ReplyDelete
  2. David Millington Indeed. And the linked article should have listed that as "not vulnerable for that particular CVE". Because the OpenSSL versions used are vulnerable to many other CVEs.

    ReplyDelete
  3. Bill Meyer If you want to feel even more secure, read these:

    coresecurity.com - Delphi and C++ Builder VCL library Buffer Overflow

    https://www.coresecurity.com/advisories/delphi-and-c-builder-vcl-library-heap-buffer-overflow

    Note that two years on, there is still no security mailing list, apparatus in place to notify users of vulnerabilities before they're publicly announced, etc.

    ReplyDelete

Post a Comment