Re: off by one exploits?

From: Dave Ahmad (daat_private)
Date: Thu Mar 07 2002 - 15:57:02 PST

  • Next message: Benjamin Morin: "RE: Rumours about Apache 1.3.22 exploits"

    For stack-based attacks, check these out:
    
    "The Frame Pointer Overwrite" by klog <klogat_private>
    http://phrack.org/phrack/55/P55-08
    
    and
    
    The post to Bugtraq by Olaf Kirch <okirat_private>:
    
    http://online.securityfocus.com/archive/1/10884
    
    Dave Ahmad
    SecurityFocus
    www.securityfocus.com
    
    On Thu, 7 Mar 2002, Christian Gresser wrote:
    
    >
    > Hello list,
    >
    > there was a post about OpenSSH and off by one
    > today on bugtraq.
    >
    > Can someone please point me to some resources
    > how to exploit off by one bugs? Google only
    > gave me an explanation but no hints about how
    > to exploit this.
    >
    > Thank you very much.
    >
    > Chris.
    >
    



    This archive was generated by hypermail 2b30 : Thu Mar 07 2002 - 18:16:05 PST