[3797] in bugtraq
Re: Exploit for crontab bug (FreeBSD 2.1.0).
daemon@ATHENA.MIT.EDU (Jake Ott)
Sat Dec 14 21:17:40 1996
Date: Sat, 14 Dec 1996 18:49:37 -0700
Reply-To: Jake Ott <mfm@frii.com>
From: Jake Ott <mfm@frii.com>
X-To: Theo de Raadt <deraadt@theos.com>
To: Multiple recipients of list BUGTRAQ <BUGTRAQ@netspace.org>
In-Reply-To: <199612142354.QAA12415@zeus.theos.com>
> Leshka Zakharoff <leshka@leshka.chuvashia.su> writes:
>
> > /* This is buffer overflow exploit for crontab bug (FreeBSD 2.1.0). */
> > /* If you have any problems with it, drop me a letter. */
> > /* Have fun ! */
>
> If I'm right, this was fixed in FreeBSD around... hmm, let's see:
>
> revision 1.5
> date: 1996/08/05 00:31:27; author: pst; state: Exp; lines: +6 -4
> Fix up some more buffer overflow problems.
>
this exploit works in 2.1.5...i just tried it
if you prove me wrong, great...but i see that it works
Happy Hunting,
Mfm