Bugtraq mailing list archives

Borland Interbase local root exploit


From: <grazer () digit-labs org>
Date: Wed, 25 Sep 2002 12:05:32 -0700 (PDT)

Hello,

I've found a bug in the Interbase gds_lock_mgr binary which is shipped
with all versions of the Sun Cobalt RAQ (XTR/4/550 etc.) and is suid by
default.

Borland did not respond to my emails. The exploit is attached.
Note: other bug than disclosed by snosoft some weeks ago.

Sincerely yours,

Wouter ter Maat aka grazer

Attachment: interbase-gds-exploit.c
Description:


Current thread: