Bugtraq mailing list archives
Webstar 4.0 Buffer overflow vulnerability
From: nasvay () HOTMAIL COM (Ilhom Djalilov)
Date: Fri, 31 Mar 2000 15:38:54 -0000
Sorry for my poor english ;) Webstar 4.0 (and earlier, vendor www.starnine.com) is popular (or not popular -i've never seen MacOS) Web, Mail and FTP server for MacOS.One day, when i played with my telnet i found machine with this httpd.When i made long get request (~1kb) GET /1111111...111.htmlit simply caused protection fault (if this kind of error present in macs :)) and when i tried to connect to port 80 of that machine my telnet said "connection refused". If anybody knows how to write shellcodes for PowerPC... :))
Current thread:
- Irix Objectserver remote exploit, (continued)
- Irix Objectserver remote exploit Marcy Abene (Mar 29)
- New ZZ v1.2 Simple Nomad (Mar 29)
- [RHSA-2000:008-01] ircii buffer overflow bugzilla () REDHAT COM (Mar 30)
- Microsoft Security Bulletin (MS00-019) Microsoft Product Security (Mar 30)
- Microsoft Security Bulletin (MS00-021) Microsoft Product Security (Mar 30)
- Napster, Inc. response to Colten Edwards Elias Levy (Mar 30)
- Cobalt apache configuration exposes .htaccess Paul Schreiber (Mar 30)
- Re: Napster, Inc. response to Colten Edwards Danny Crawford (Mar 30)
- Re: Napster, Inc. response to Colten Edwards Dylan Griffiths (Mar 30)
- Alert: MS Index Server (CISADV000330) Cerberus Security Team (Mar 30)
- Webstar 4.0 Buffer overflow vulnerability Ilhom Djalilov (Mar 31)
- Microsoft Security Bulletin (MS00-006) Microsoft Product Security (Mar 31)
- [ Cobalt ] Security Advisory -- 03.31.2000 Jeff Lovell (Mar 31)
- SalesLogix Eviewer Web App Bug: URL request crashes eviewer web application Todd Beebe (Mar 31)
- Windmail allow web user get any file Frankie Zie (Mar 25)
- Re: Local Denial-of-Service attack against Linux Gigi Sullivan (Mar 26)
- Re: Local Denial-of-Service attack against Linux Gigi Sullivan (Mar 31)
- Re: gpm-root Alessandro Rubini (Mar 23)