pine/pico vt control characters bug [2]

From: Michal Zalewski (lcamtufat_private)
Date: Sat Apr 25 1998 - 10:05:41 PDT

  • Next message: Jess Kitchen: "Re: Minor hole in "cxhextris" on certain Linux."

    /* back to the 0x9B char */
    
    Just as an addendum - risk of '0x9B bug' depends mainly on terminal
    capabilities - while 'dumb' terminals are mostly safe (maybe except DoS
    attacks, destruction of display, etc) - smarter ones are vunerable to
    things like parsing arbitrary strings as typed from keyboard, changing
    terminal options, writing files and executing arbitrary code (see
    'capabilities' section on termcap manpage, then termcap entry for your
    terminal type). Most of them, if implemented, are available via 0x9B
    control character.
    
    _______________________________________________________________________
    Michal Zalewski [lcamtufat_private] <= finger for pub PGP key
    Iterowac jest rzecza ludzka, wykonywac rekursywnie - boska [P. Deutsch]
    [echo "\$0&\$0">_;chmod +x _;./_] <=------=> [tel +48 (0) 22 813 25 86]
    



    This archive was generated by hypermail 2b30 : Fri Apr 13 2001 - 13:51:15 PDT