Re: suid scotty (ntping) overflow

From: Larry W. Cashdollar (lwcat_private)
Date: Thu Jun 14 2001 - 15:44:38 PDT

  • Next message: Kayne Ian (Softlab): "RE: Software authentication (was RE: Gibson (was Crack Office XP) )"

    To add to this, if the right shellcode is put in place, some that calls a
    setuid(0) my exploit should spit out a euid(0) shell.  Should this migrate
    to the bugtraq list now?
    
    On Wed, 13 Jun 2001, Larry W. Cashdollar wrote:
    
    > 
    > Well anyway here is an exploit I was toying with.  Perhaps someone with
    > better overflow skills can tweak it a bit.
    



    This archive was generated by hypermail 2b30 : Fri Jun 15 2001 - 13:43:12 PDT