Bugtraq mailing list archives

Re: Solaris whodo Vulnerability


From: Pablo Sor <psor () afip gov ar>
Date: Fri, 06 Jul 2001 11:39:03 -0400

Dan Astoorian wrote:

On Thu, 05 Jul 2001 15:50:44 EDT, Pablo Sor writes:

The /usr/sbin/sparcv9/whodo seems to be not vulnerable.

May I ask on what basis you have come to that conclusion?

| palm.cs:~> uname -insrmp
| SunOS palm.cs 5.8 sun4u sparc SUNW,Ultra-1
| palm.cs:~> env CFTIME=`perl -e 'print "x" x 150'` /usr/sbin/sparcv9/whodo
| 
xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
| palm.cs
| Segmentation fault
| palm.cs:~>


Sorry, you are right, I made a mistake while testing it.

Thanks you.

-- 
Pablo Sor
psor () afip gov ar, psor () ccc uba ar


Current thread: