Full Disclosure mailing list archives
Re: Re: /usr/bin/trn local root exploit
From: Honza Vlach <janus () volny cz>
Date: Wed, 26 Jan 2005 13:42:50 +0100
Who would install trn setuid anyway? Regards, Honza Vlach On Wed, Jan 26, 2005 at 07:05:27AM -0500, msh at datakill wrote:
From: msh at datakill <msh () datakill us> Date: Wed, 26 Jan 2005 07:05:27 -0500 To: full-disclosure () lists netsys com Subject: Re: [Full-disclosure] /usr/bin/trn local root exploit I just tested this on Slackware 10 and I get nothing but Segementation Faults. I see that you have the RET value filled in, but how am I to calculate what to use for the BOO? You use 142 and 128 in the example.
-- -----BEGIN GEEK CODE BLOCK----- Version: 3.12 GIT/CS d- s: a-- C++++$ ULS++++$ P L+++ E--- W- N+ o? K? w-->--- O? M->+ V? PS PE Y++ PGP+++ !t 5? X++ R tv-- b++ DI+ D++ G+>+++ e h--- r++ y? ------END GEEK CODE BLOCK------ () ascii ribbon campaign - against html mail /\ - against microsoft attachments
Attachment:
_bin
Description:
_______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.netsys.com/full-disclosure-charter.html
Current thread:
- /usr/bin/trn local root exploit Z z a g o r R (Jan 26)
- Re: /usr/bin/trn local root exploit msh at datakill (Jan 26)
- Re: Re: /usr/bin/trn local root exploit Honza Vlach (Jan 26)
- Re: /usr/bin/trn local root exploit Z z a g o r R (Jan 26)
- Re: /usr/bin/trn local root exploit Frank Thyes (Jan 26)
- <Possible follow-ups>
- Re: /usr/bin/trn local root exploit ntx0f (Jan 27)
- Re: /usr/bin/trn local root exploit Wojciech Pawlikowski (Jan 27)
- Re: /usr/bin/trn local root exploit msh at datakill (Jan 26)