Vulnerability Development mailing list archives

Re: buffer overflow with greek characters, NIX


From: KF <dotslash () snosoft com>
Date: Wed, 17 Apr 2002 21:20:12 -0700

Nah the unix guy is suffering from a bug in X and or in the protocol handling of KDE in general including Konqueror / kmail / file dialog boxes / etc... Long title bars are one way of triggering this. I have posted a few times on this... xterm --title b0fhere may crash your box if you have the bug in X. If its a bug in Konqueror / KDE protocols try making an html file with AAAAAAAA... a few thousand times as the <title>AAA....</title> and open it.

-KF


MegaHz wrote:

check this guy out,

================================================================
From: "Simon Dickson" <simon () phpnode org>
To: <costcon () cytanet com cy>; <bugtraq () securityfocus com>
Cc: <eurohack () eurohack net>
Sent: Tuesday, April 16, 2002 7:22 PM
Subject: Re: buffer overflow, using greek characters, AGAIN!


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

I dont know about IE, but I checked your test page in Konqueror 3.0 and it
killed everything.

By everything I mean X crashed. I'll just explain what I run.

Slackware 8.0
Millions of changes and updates
Use windowmaker 0.80.0
I just run the KDE Applications cos they are good.
Was running kmail, kate and konqueror at the time.
It crashed back a console shell.

Simon

================================================================

test page: http://megahz.cyhackportal.com/hey.html

pls test it out on your own *nix boxes and let me know


/*
* Andreas Constantinides (MegaHz)
* Admin of cHp (www.cyhackportal.com)
*
*/






Current thread: