reaction to mysql remote buffer overflow 0day being posted online?

reaction to mysql remote buffer overflow 0day being posted online?

am 11.01.2010 06:05:08 von Brian Krebs

Apologies in advance for spamming the list. My name is Brian Krebs, and I'm
a investive reporter who writes about computer security issues.

I've just interviewed the founder of a Russian security firm who says he's
getting close to posting pointers to and in some cases exploits for a large
number of 0day vulnerabilities in database and web server products,
including at least one -- possibly two -- remote buffer overflows in mysql.
I've interviewed clueful folks who vouch for this guy's chops, so I know
he's not making this up.

As you may have guessed by now, I'm fishing for a comment or response from
the mysql/dev community about this.

Can I trouble someone to ping me back at krebsonsecurity@gmail.com ?

Thanks in advance,

Brian Krebs
www.krebsonsecurity.com



--
MySQL General Mailing List
For list archives: http://lists.mysql.com/mysql
To unsubscribe: http://lists.mysql.com/mysql?unsub=gcdmg-mysql-2@m.gmane.org