[Bug 280705] 0.0.0.0/32 is equivalent to 127.0.0.1/32, which may be considered a security flaw

[email protected]
Newsgroups gmane.os.freebsd.devel.net
Message-ID <[email protected]/bugzilla/>
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=280705

--- Comment #5 from Eirik Oeverby <[email protected]> ---
(In reply to paul vixie from comment #4)
I don't think that's a concern any longer, is it?
The reason I'm even reporting this as a bug (and not simply leaving it to
browser vendors to fix since that's how this surfaced now) is how it completely
blindsides anyone who might come across it, and I would not be surprised if a
plethora of new attack vectors - having nothing to do with browsers - crop up
in the near future. 

I don't have a firm understanding of how bad it might be, but it might be worth
a security advisory. Then again, I might be seeing ghosts in broad daylight.

(Well, a ghost it is, I guess..)

-- 
You are receiving this mail because:
You are the assignee for the bug.
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.