Vulnerability Development mailing list archives

Re: xmalloc buffer overflow?


From: Christoph Moench-Tegeder <ry04 () rz uni-karlsruhe de>
Date: Fri, 9 Nov 2001 20:00:32 +0100

## Robert Freeman (freem100 () chapman edu):

Can anybody else verify these results? It doesn't matter what `perl -e
'print "." x 90000000'` is appended to, I just chose vi (the vi buffer
overflow being my inspiration). Please use the exploit responsibly; also if
it is redundant, I apologize.

On "Linux cow 2.4.13 #1 SMP Wed Oct 24 11:29:32 CEST 2001 i686 unknown"
with bash "GNU bash, version 2.05.0(1)-release (i386-pc-linux-gnu)"
all I get is "bash: /usr/bin/vi: Argument list too long".
With pdksh "PD KSH v5.2.14 99/07/13.2" I get
"ksh: vi: Argument list too long"

No root, no core, just an error.

Regards,
cmt

-- 
Spare Space


Current thread: