Bugtraq mailing list archives

Buffer Overflow?


From: desautel () OPENMARKET COM (Adriel Desautels)
Date: Wed, 19 Aug 1998 11:25:42 -0400


Hi,

        I am not all that certain as to how much of a

problem this is however I do think that it is curious.

If you more or cat the /etc/passwd and pipe it to login,

notice that in /var/adm/messages or /var/log/messages

will produce the following error.


Aug 19 10:54:19 xxxxxxx.xx.xxxxxxx.xxx login: REPEATED LOGIN FAILURES ON /dev/???

NOTE: The xxxxxxx.xx.xxxxxxx.xxx is to hide the host.


--How to repeat:

        PROMPT> more /etc/passwd | login

        NOTE: you get booted when it it done.

        Log back in, or have a second window and type

        PROMPT> tail /var/adm/messages OR /var/log/messages



        in the messages you will see

        Aug 19 10:54:19 xxxxxxx.xx.xxxxxxx.xxx login: REPEATED LOGIN FAILURES ON /dev/???


I do not have time to look into this further however I hope that someone else here does. I am very curious as to why 
this is happening.  Systems that I have tested this on: Sun Microsystems Inc. SunOS 5.6 Generic August 1997


Hope this is nothing serious..





Sincerely,

        Adriel T. Desautels

<bold>

</bold>..........................................

E   N   G   I   N   E   E   R   I   N   G

..........................................

PHONE:    781-359-7425

E-MAIL:    desautel () openmarket com

E-MAIL:    simon () m00t dyn ml org

<bold>

<bigger>

</bigger></bold><smaller>

</smaller>



Current thread: