|
Appweb reported an issue described as a "fix for stack overflow with very large output headers." This was originally interpreted by OSVDB to mean a possibly exploitable overflow, for denial of service and/or code execution. After extensive discussion with the vendor, it was explained that the when Appweb is included on an embedded device, the stack size is controlled by the VxWorks developers of the device. As such, this fix is not for an exploitable condition, despite the wording, and is not a valid issue.
|