Re: [Full-disclosure] RHEL Linux Kernel Exploit

2010-12-16 Thread PsychoBilly
http://28.media.tumblr.com/tumblr_l4sobiXxwf1qza4ndo1_400.jpg

[[   rancor   ]] @ [[   15/12/2010 20:44   
]]--
 -g musnt live is a parody of must live... humor this =)
 
 // rancor
 
 2010/12/15 Greg Whynott gwhyn...@gmail.com mailto:gwhyn...@gmail.com
 
 funny... 
 1. you were root when you ran the code!  epic elite.
 2. he said red hat  NOT redhat based.   Redhat has no control over what 
 others do to redhat based efforts.
 you need more coffee!  8)
 
 -g
 
 
 
 
 musnt live spewed:
 
 [musntl...@pizda ~]# awk '/rel/' /etc/issue
 Scientific Linux SL release 5.5 (Boron)
 [musntl...@pizda ~]# uname -a
 Linux allotropos 2.6.18-194.3.1.el5 #1 SMP Fri May 7 01:52:57 EDT 2010
 i686 athlon i386 GNU/Linux
 [musntl...@pizda ~]# md5sum fullnullson.c
 b16e2a647bc8de1f72f25ab29aa916da  fullnullson.c
 [musntl...@pizda ~]# gcc -o hakaruski fullnullson.c  ./hakaruski
 [*] Failed to open file descriptors.
 [musntl...@pizda ~]# id
 uid=0(root) gid=0(root)
 
 groups=0(root),1(bin),2(daemon),3(sys),4(adm),6(disk),10(wheel),1337(hakaruskis)
 [musntl...@pizda ~]# whoami
 musntlive
 
 Is this exploit work and is my Linux is RedHat based. Thank you Dan
 and Ryan Seacrest!
 
 
 
 -- 
 --
 
 ___
 Full-Disclosure - We believe in it.
 Charter: http://lists.grok.org.uk/full-disclosure-charter.html
 Hosted and sponsored by Secunia - http://secunia.com/
 
 
 
 
 ___
 Full-Disclosure - We believe in it.
 Charter: http://lists.grok.org.uk/full-disclosure-charter.html
 Hosted and sponsored by Secunia - http://secunia.com/

___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


[Full-disclosure] RHEL Linux Kernel Exploit

2010-12-15 Thread musnt live
On 12/13/2010 4:27 PM, Ryan Sears wrote:
 Hey Dan,

 Freaking THANK YOU first and foremost. I've been waiting for someone to say 
 that for days now, and was just about to myself.

is snip

 Plain and simple. *THEN* there's people who don't even bother to read that 
 Red Hat does not support Econet by default. DOES NOT. As in the exploit 
 WON'T WORK!

[musntl...@pizda ~]# awk '/rel/' /etc/issue
Scientific Linux SL release 5.5 (Boron)
[musntl...@pizda ~]# uname -a
Linux allotropos 2.6.18-194.3.1.el5 #1 SMP Fri May 7 01:52:57 EDT 2010
i686 athlon i386 GNU/Linux
[musntl...@pizda ~]# md5sum fullnullson.c
b16e2a647bc8de1f72f25ab29aa916da  fullnullson.c
[musntl...@pizda ~]# gcc -o hakaruski fullnullson.c  ./hakaruski
[*] Failed to open file descriptors.
[musntl...@pizda ~]# id
uid=0(root) gid=0(root)
groups=0(root),1(bin),2(daemon),3(sys),4(adm),6(disk),10(wheel),1337(hakaruskis)
[musntl...@pizda ~]# whoami
musntlive

Is this exploit work and is my Linux is RedHat based. Thank you Dan
and Ryan Seacrest!

___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Re: [Full-disclosure] RHEL Linux Kernel Exploit

2010-12-15 Thread Valdis . Kletnieks
On Wed, 15 Dec 2010 12:25:26 EST, musnt live said:

 [musntl...@pizda ~]# gcc -o hakaruski fullnullson.c  ./hakaruski
 [*] Failed to open file descriptors.

'#'.  Exploit testing fail.


pgpHly80d0N0r.pgp
Description: PGP signature
___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Re: [Full-disclosure] RHEL Linux Kernel Exploit

2010-12-15 Thread Benji
wooosshhh, right over Vlads head

On Wed, Dec 15, 2010 at 5:35 PM, valdis.kletni...@vt.edu wrote:

 On Wed, 15 Dec 2010 12:25:26 EST, musnt live said:

  [musntl...@pizda ~]# gcc -o hakaruski fullnullson.c  ./hakaruski
  [*] Failed to open file descriptors.

 '#'.  Exploit testing fail.

 ___
 Full-Disclosure - We believe in it.
 Charter: http://lists.grok.org.uk/full-disclosure-charter.html
 Hosted and sponsored by Secunia - http://secunia.com/

___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Re: [Full-disclosure] RHEL Linux Kernel Exploit

2010-12-15 Thread musnt live
On Wed, Dec 15, 2010 at 1:04 PM, Greg Whynott greg.whyn...@oicr.on.ca wrote:
 funny...
 1. you were root when you ran the code!  epic elite.
 2. he said red hat  NOT redhat based.   Redhat has no control over what 
 others do to redhat based efforts.


Is you must not feed the troll. Is proof this to be work on RHEL based
machines as SL is more Redhat than CentOS. Is like OpenBSD: OpenBSD is
only NetBSD minus the backdoor in IPSEC


[musntl...@pizda ~]$ id
uid=500(musntlive) gid=500(musntlive) groups=500(musntlive)
[musntl...@pizda ~]# gcc -o hakaruski fullnullson.c  ./hakaruski ; id ; whoami
[*] Failed to open file descriptors.
uid=0(root) gid=0(root)
groups=0(root),1(bin),2(daemon),3(sys),4(adm),6(disk),10(wheel),1337(hakaruskis)
root
[musntl...@pizda ~]#

___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


[Full-disclosure] RHEL Linux Kernel Exploit

2010-12-15 Thread Greg Whynott
funny...
1. you were root when you ran the code!  epic elite.
2. he said red hat  NOT redhat based.   Redhat has no control over what
others do to redhat based efforts.
you need more coffee!  8)

-g




musnt live spewed:

[musntl...@pizda ~]# awk '/rel/' /etc/issue
Scientific Linux SL release 5.5 (Boron)
[musntl...@pizda ~]# uname -a
Linux allotropos 2.6.18-194.3.1.el5 #1 SMP Fri May 7 01:52:57 EDT 2010
i686 athlon i386 GNU/Linux
[musntl...@pizda ~]# md5sum fullnullson.c
b16e2a647bc8de1f72f25ab29aa916da  fullnullson.c
[musntl...@pizda ~]# gcc -o hakaruski fullnullson.c  ./hakaruski
[*] Failed to open file descriptors.
[musntl...@pizda ~]# id
uid=0(root) gid=0(root)
groups=0(root),1(bin),2(daemon),3(sys),4(adm),6(disk),10(wheel),1337(hakaruskis)
[musntl...@pizda ~]# whoami
musntlive

Is this exploit work and is my Linux is RedHat based. Thank you Dan
and Ryan Seacrest!



-- 
--
___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Re: [Full-disclosure] RHEL Linux Kernel Exploit

2010-12-15 Thread rancor
-g musnt live is a parody of must live... humor this =)

// rancor

2010/12/15 Greg Whynott gwhyn...@gmail.com

 funny...
 1. you were root when you ran the code!  epic elite.
 2. he said red hat  NOT redhat based.   Redhat has no control over what
 others do to redhat based efforts.
 you need more coffee!  8)

 -g




 musnt live spewed:

 [musntl...@pizda ~]# awk '/rel/' /etc/issue
 Scientific Linux SL release 5.5 (Boron)
 [musntl...@pizda ~]# uname -a
 Linux allotropos 2.6.18-194.3.1.el5 #1 SMP Fri May 7 01:52:57 EDT 2010
 i686 athlon i386 GNU/Linux
 [musntl...@pizda ~]# md5sum fullnullson.c
 b16e2a647bc8de1f72f25ab29aa916da  fullnullson.c
 [musntl...@pizda ~]# gcc -o hakaruski fullnullson.c  ./hakaruski
 [*] Failed to open file descriptors.
 [musntl...@pizda ~]# id
 uid=0(root) gid=0(root)

 groups=0(root),1(bin),2(daemon),3(sys),4(adm),6(disk),10(wheel),1337(hakaruskis)
 [musntl...@pizda ~]# whoami
 musntlive

 Is this exploit work and is my Linux is RedHat based. Thank you Dan
 and Ryan Seacrest!



 --
 --

 ___
 Full-Disclosure - We believe in it.
 Charter: http://lists.grok.org.uk/full-disclosure-charter.html
 Hosted and sponsored by Secunia - http://secunia.com/

___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/