[38032] in bugtraq
Re: [EXPL] (MS04-031) NetDDE buffer overflow vulnerability PoC
daemon@ATHENA.MIT.EDU (Alberto Garcia Hierro)
Fri Dec 31 13:47:33 2004
From: Alberto Garcia Hierro <tcpdevil@linuxlover.org>
To: bugtraq@securityfocus.com
Date: Fri, 31 Dec 2004 19:09:02 +0100
In-Reply-To: <20041230233921.2776.qmail@www.securityfocus.com>
MIME-Version: 1.0
Content-Type: multipart/signed;
boundary="nextPart1150700.cpAQ4luyDT";
protocol="application/pgp-signature";
micalg=pgp-sha1
Content-Transfer-Encoding: 7bit
Message-Id: <200412311909.11288.tcpdevil@linuxlover.org>
--nextPart1150700.cpAQ4luyDT
Content-Type: text/plain;
charset="iso-8859-15"
Content-Transfer-Encoding: quoted-printable
Content-Disposition: inline
El Viernes, 31 de Diciembre de 2004 00:39, houseofdabus HOD escribi=F3:
> ---snip---
> /* HOD-ms04031-netdde-expl.c: 2004-12-30: PUBLIC v.0.2
> *
> * Copyright (c) 2004 houseofdabus.
> *
> * (MS04-031) NetDDE buffer overflow vulnerability PoC
I needed to add a few lines to build it on Linux. Here is the diff:
@@ -11,6 +11,9 @@
#include <sys/types.h>
#include <netinet/in.h>
#include <sys/socket.h>
+#include <netdb.h>
+#define Sleep(x) sleep(x)
+#define closesocket(x) close(x)
#endif
Regards,
Alberto
=2D-=20
/* Alberto Garc=EDa Hierro (Skyhusker) */
--nextPart1150700.cpAQ4luyDT
Content-Type: application/pgp-signature
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.9.10 (GNU/Linux)
iD8DBQBB1ZXH4O6JklHkL2cRAk0LAJ0Ys0M2yRFOOEVi+2tocm+9Q1Wm6gCfaCA2
1Is1/yl/OVfTLi+8I8VDP5w=
=3epC
-----END PGP SIGNATURE-----
--nextPart1150700.cpAQ4luyDT--