Re: OpenBSD 2.9,2.8 local root compromise

From: jon (jonat_private)
Date: Thu Jun 14 2001 - 14:46:28 PDT

  • Next message: Gary Flynn: "Re: personal web server directory traversal vulnerability patch"

    doesn't seem to work on OpenBSD 2.6:
    foo:/tmp$ uname -mrsv
    OpenBSD 2.6 GENERIC#696 i386
    foo:/tmp$ whoami
    jon
    foo:/tmp$ ./vvopenbsd
    Written by Georgi Guninski
    Shall jump to dfbfde1d
    Started pid1=22257 target=22257
    Attached!
    sig=4479 Suspended (signal)
    eip=400543c7 esp=dfbfdb74
    exiting
    exiting
    exiting
    exiting
    exiting
    exiting
    $ whoami
    jon
    $ ^D
    foo:/tmp$ ./vvopenbsd
    Written by Georgi Guninski
    Shall jump to dfbfde1d
    Started pid1=16336 target=16336
    su: you are not in the correct group to su root
    
    etc etc etc
    
    -jon
    
    -- 
    "Less like a rocket, more like a balloon."
    



    This archive was generated by hypermail 2b30 : Fri Jun 15 2001 - 09:26:12 PDT