Christey> CD:SF-LOC may suggest merging with CVE-2001-0761
CHANGE> [Christey changed vote from NOOP to REVIEWING]
Also say it's the Serial Number field, as stated in
ISVWNTBufferOverflowPatch.txt of the zip file.
Since there is a separate patch for CVE-2001-0761 (though no
build number), there is enough evidence to keep these
2 candidates separate.
CHANGE> [Christey changed vote from REVIEWING to RECAST]
This patch fixes a number of overflows in various DLL's,
including RegGo.dll. See Readme_ISNT_BufferOverflowPatchFiles.txt.
By CD:SF-LOC, the same type of issue appears in the same
versions, so CVE-2001-0678 must be RECAST to include the following
*other* issues in 1512:
(1) FtpSaveCSP.dll, (2) FtpSaveCVP.dll, (3)
HttpSaveCSP.dll, (4) HttpSaveCVP.dll, (5) RegGo.dll, (6) ViewLog.dll,
(7) ftpSaveCVP.dll, (8) patupd.dll, (9) smtpscan.dll, or (10)
BUGTRAQ:20010612 [SNS Advisory No.31] Trend Micro InterScan VirusWall for Windows NT 3.51 FtpSaveC*P.dll Buffer Overflow Vulnerability