Full Disclosure mailing list archives

Re: PWCK Overflow POC Code Redhat/Suse older versions or something (maybe later too)


From: Steve Friedl <steve () unixwiz net>
Date: Fri, 6 May 2005 22:03:02 -0700

On Fri, May 06, 2005 at 06:03:26PM -0700, Day Jay wrote:
//(PWCK is NOT SETUID) This isn't fake 
//code I promise (it may be borrowed) ;)  d4yj4y 

It may or may not be fake, but you are an *astonishingly* lame C programmer:

  for(i=0; i < strlen(shellcode); i++)
  { *(ptr++) = shellcode[i]; }

Wow.

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Current thread: