Re: Telnetd AYT overflow scanner

From: John Marquart (jomarquaat_private)
Date: Thu Jul 26 2001 - 14:53:29 PDT

  • Next message: Lupe Christoph: "Re: top format string bug exploit code (exploitable)"

    In addtion to the systems mentioned, AIX 4.3.3 (ML 4) seems to have
    problems - SPtelnetAYT shows it as being not vulnerable, but when run
    against an AIX 4.3.3_04 box, it causes telnetd to dump core:
    
    Detail Data 
    SIGNAL NUMBER
              11 
    USER'S PROCESS ID:
           41078 
    FILE SYSTEM SERIAL NUMBER
               5 
    INODE NUMBER
               2 
    PROGRAM NAME
    telnetd 
    ADDITIONAL INFORMATION 
    strncmp 1C
    cleanup B0 
    netflush 114 
    ttloop 28 
    gettermin 7C 
    doit 400 
    main 5B8 
    __start 8C
     
    Symptom Data REPORTABLE 1 INTERNAL ERROR 1 SYMPTOM CODE
    PIDS/5765c3403 LVLS/430 PCSS/SPI2 FLDS/telnetd SIG/11 FLDS/strncmp VALU/1c
    FLDS/netflush                                                                        
    



    This archive was generated by hypermail 2b30 : Thu Jul 26 2001 - 15:33:59 PDT