Full Disclosure mailing list archives

*BSD passlogd remote root exploit.


From: "dong-h0un U" <xploit () hackermail com>
Date: Sun, 06 Apr 2003 17:52:49 +0800



Made out *BSD exploit.
It works in OpenBSD 3.0, FreeBSD 4.6.2-RELEASE.

For reference, FreeBSD includes passlogd-0.1d port:
http://www.freebsd.org/cgi/cvsweb.cgi/ports/net/passlogd/

Proof of Concept exploit:
http://x82.inetcop.org/h0me/c0de/0x82-Remote.XxxxBSD_passlogd.xpl.c


--
Thank you.


-- 
_______________________________________________
Get your free email from http://www.hackermail.com

Powered by Outblaze
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html


Current thread: