Security Basics mailing list archives

Threat scenarios from local buffer overflow


From: "SmartKID" <flawpee () rediffmail com>
Date: Sat, 11 Jan 2003 09:45:24 -0800

Hi,

Are there any possible threat scenarios from a buffer overflow in an
executable stored locally. For instance, say something like notepad.exe has
a buffer overflow, which might be exploited by issuing

notepad aaaaaa(3000 times).txt

Would this allow any sort of system compromise or privilege execution?

Thanks
SmartKIDJoe


Current thread: