Vulnerability Development mailing list archives

Re: New bugs discovered!


From: "Croquette Friskies" <crokett () ifrance com>
Date: Mon, 19 Nov 2001 20:53:04 +0100

At home :

shinobu:~$ uname -a; gzip -V; gzip `perl -e "print 'A'x2048"`
Linux shinobu 2.2.13 #22 Wed Oct 20 17:32:52 CDT 1999 i486 unknown
gzip 1.2.4 (18 Aug 93)
Compilation options:
DIRENT UTIME STDC_HEADERS HAVE_UNISTD_H ASMV
[Snif full of A ]
File name too long
Segmentation fault

20:21:13 Jafa:/usr/lib/php4# uname -a; gzip -V; gzip `perl -e "print
'A'x2048"`
Linux Jafa 2.4.2 #2 SMP Wed Mar 7 14:26:02 CET 2001 i686 unknown
gzip 1.2.4 (18 Aug 93)
Compilation options:
DIRENT UTIME STDC_HEADERS HAVE_UNISTD_H ASMV
[Snif full of A]
File name too long

so ...
 croquette
----
"La Faluche est acceuillante et s'exprime à travers nous .."
Le 114 c'est à Paname !
----- Original Message -----
From: "X" <tetsuo () potorro com>
To: <GOBBLES () hushmail com>
Cc: <vuln-dev () securityfocus com>
Sent: Monday, November 19, 2001 4:26 PM
Subject: Re: New bugs discovered!




sun:tetsuo {59} uname -a; gzip -V; gzip `perl -e "print 'A'x2048"`
OpenBSD sun 2.9 GENERIC#34 sparc
gzip 1.2.4 (18 Aug 93)
Compilation options:
DIRENT UTIME STDC_HEADERS HAVE_UNISTD_H DYN_ALLOC
Word too long.



El Domingo 18 Noviembre 2001 21:03, escribió:
GOBBLES security is happy to announce the discovery of multiple bugs in
/bin/gzip, which can be exploited remotely with a bit of creativity.
Attached is our advisory on the matter.

Enjoy the knowledge and remember to use it responsible.

The GOBBLES Team
www.bugtraq.org

 
______________________________________________________________________________
ifrance.com, l'email gratuit le plus complet de l'Internet !
vos emails depuis un navigateur, en POP3, sur Minitel, sur le WAP...
http://www.ifrance.com/_reloc/email.emailif



Current thread: