Vulnerability Development mailing list archives

Re: lpd exploit?


From: Graeme Fowler <graeme.f () WEBFUSION CO UK>
Date: Fri, 8 Dec 2000 16:43:51 -0000

I wrote:
Ok then, here's one I found on a cracked box earlier today. Haven't
tested it fully yet though - I haven't got a RH7 box to fire it at...

...and then I found one. And it broke in pretty easily, although I did
have to use the 'brute force' option which spawned a lot of lpd children
and consumed CPU time like no tomorrow. It also left a massive log
footprint, but I can see that getting zapped once the shell is
available.

Graeme


Current thread: