Re: [Full-disclosure] RHEL Linux Kernel Exploit
http://28.media.tumblr.com/tumblr_l4sobiXxwf1qza4ndo1_400.jpg [[ rancor ]] @ [[ 15/12/2010 20:44 ]]-- -g musnt live is a parody of must live... humor this =) // rancor 2010/12/15 Greg Whynott gwhyn...@gmail.com mailto:gwhyn...@gmail.com funny... 1. you were root when you ran the code! epic elite. 2. he said red hat NOT redhat based. Redhat has no control over what others do to redhat based efforts. you need more coffee! 8) -g musnt live spewed: [musntl...@pizda ~]# awk '/rel/' /etc/issue Scientific Linux SL release 5.5 (Boron) [musntl...@pizda ~]# uname -a Linux allotropos 2.6.18-194.3.1.el5 #1 SMP Fri May 7 01:52:57 EDT 2010 i686 athlon i386 GNU/Linux [musntl...@pizda ~]# md5sum fullnullson.c b16e2a647bc8de1f72f25ab29aa916da fullnullson.c [musntl...@pizda ~]# gcc -o hakaruski fullnullson.c ./hakaruski [*] Failed to open file descriptors. [musntl...@pizda ~]# id uid=0(root) gid=0(root) groups=0(root),1(bin),2(daemon),3(sys),4(adm),6(disk),10(wheel),1337(hakaruskis) [musntl...@pizda ~]# whoami musntlive Is this exploit work and is my Linux is RedHat based. Thank you Dan and Ryan Seacrest! -- -- ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/ ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/ ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/
[Full-disclosure] RHEL Linux Kernel Exploit
On 12/13/2010 4:27 PM, Ryan Sears wrote: Hey Dan, Freaking THANK YOU first and foremost. I've been waiting for someone to say that for days now, and was just about to myself. is snip Plain and simple. *THEN* there's people who don't even bother to read that Red Hat does not support Econet by default. DOES NOT. As in the exploit WON'T WORK! [musntl...@pizda ~]# awk '/rel/' /etc/issue Scientific Linux SL release 5.5 (Boron) [musntl...@pizda ~]# uname -a Linux allotropos 2.6.18-194.3.1.el5 #1 SMP Fri May 7 01:52:57 EDT 2010 i686 athlon i386 GNU/Linux [musntl...@pizda ~]# md5sum fullnullson.c b16e2a647bc8de1f72f25ab29aa916da fullnullson.c [musntl...@pizda ~]# gcc -o hakaruski fullnullson.c ./hakaruski [*] Failed to open file descriptors. [musntl...@pizda ~]# id uid=0(root) gid=0(root) groups=0(root),1(bin),2(daemon),3(sys),4(adm),6(disk),10(wheel),1337(hakaruskis) [musntl...@pizda ~]# whoami musntlive Is this exploit work and is my Linux is RedHat based. Thank you Dan and Ryan Seacrest! ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/
Re: [Full-disclosure] RHEL Linux Kernel Exploit
On Wed, 15 Dec 2010 12:25:26 EST, musnt live said: [musntl...@pizda ~]# gcc -o hakaruski fullnullson.c ./hakaruski [*] Failed to open file descriptors. '#'. Exploit testing fail. pgpHly80d0N0r.pgp Description: PGP signature ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/
Re: [Full-disclosure] RHEL Linux Kernel Exploit
wooosshhh, right over Vlads head On Wed, Dec 15, 2010 at 5:35 PM, valdis.kletni...@vt.edu wrote: On Wed, 15 Dec 2010 12:25:26 EST, musnt live said: [musntl...@pizda ~]# gcc -o hakaruski fullnullson.c ./hakaruski [*] Failed to open file descriptors. '#'. Exploit testing fail. ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/ ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/
Re: [Full-disclosure] RHEL Linux Kernel Exploit
On Wed, Dec 15, 2010 at 1:04 PM, Greg Whynott greg.whyn...@oicr.on.ca wrote: funny... 1. you were root when you ran the code! epic elite. 2. he said red hat NOT redhat based. Redhat has no control over what others do to redhat based efforts. Is you must not feed the troll. Is proof this to be work on RHEL based machines as SL is more Redhat than CentOS. Is like OpenBSD: OpenBSD is only NetBSD minus the backdoor in IPSEC [musntl...@pizda ~]$ id uid=500(musntlive) gid=500(musntlive) groups=500(musntlive) [musntl...@pizda ~]# gcc -o hakaruski fullnullson.c ./hakaruski ; id ; whoami [*] Failed to open file descriptors. uid=0(root) gid=0(root) groups=0(root),1(bin),2(daemon),3(sys),4(adm),6(disk),10(wheel),1337(hakaruskis) root [musntl...@pizda ~]# ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/
[Full-disclosure] RHEL Linux Kernel Exploit
funny... 1. you were root when you ran the code! epic elite. 2. he said red hat NOT redhat based. Redhat has no control over what others do to redhat based efforts. you need more coffee! 8) -g musnt live spewed: [musntl...@pizda ~]# awk '/rel/' /etc/issue Scientific Linux SL release 5.5 (Boron) [musntl...@pizda ~]# uname -a Linux allotropos 2.6.18-194.3.1.el5 #1 SMP Fri May 7 01:52:57 EDT 2010 i686 athlon i386 GNU/Linux [musntl...@pizda ~]# md5sum fullnullson.c b16e2a647bc8de1f72f25ab29aa916da fullnullson.c [musntl...@pizda ~]# gcc -o hakaruski fullnullson.c ./hakaruski [*] Failed to open file descriptors. [musntl...@pizda ~]# id uid=0(root) gid=0(root) groups=0(root),1(bin),2(daemon),3(sys),4(adm),6(disk),10(wheel),1337(hakaruskis) [musntl...@pizda ~]# whoami musntlive Is this exploit work and is my Linux is RedHat based. Thank you Dan and Ryan Seacrest! -- -- ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/
Re: [Full-disclosure] RHEL Linux Kernel Exploit
-g musnt live is a parody of must live... humor this =) // rancor 2010/12/15 Greg Whynott gwhyn...@gmail.com funny... 1. you were root when you ran the code! epic elite. 2. he said red hat NOT redhat based. Redhat has no control over what others do to redhat based efforts. you need more coffee! 8) -g musnt live spewed: [musntl...@pizda ~]# awk '/rel/' /etc/issue Scientific Linux SL release 5.5 (Boron) [musntl...@pizda ~]# uname -a Linux allotropos 2.6.18-194.3.1.el5 #1 SMP Fri May 7 01:52:57 EDT 2010 i686 athlon i386 GNU/Linux [musntl...@pizda ~]# md5sum fullnullson.c b16e2a647bc8de1f72f25ab29aa916da fullnullson.c [musntl...@pizda ~]# gcc -o hakaruski fullnullson.c ./hakaruski [*] Failed to open file descriptors. [musntl...@pizda ~]# id uid=0(root) gid=0(root) groups=0(root),1(bin),2(daemon),3(sys),4(adm),6(disk),10(wheel),1337(hakaruskis) [musntl...@pizda ~]# whoami musntlive Is this exploit work and is my Linux is RedHat based. Thank you Dan and Ryan Seacrest! -- -- ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/ ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/