[40023] in bugtraq

home help back first fref pref prev next nref lref last post

Re: Undisclosed Sudo Vulnerability ?

daemon@ATHENA.MIT.EDU (babarr@gmail.com)
Sat Jul 30 19:04:58 2005

Date: 30 Jul 2005 22:56:09 -0000
Message-ID: <20050730225609.31937.qmail@securityfocus.com>
Content-Type: text/plain
Content-Disposition: inline
Content-Transfer-Encoding: binary
MIME-Version: 1.0
From: babarr@gmail.com
To: bugtraq@securityfocus.com

I wouldn't run this unless you want something like this:
execve("/bin/sh", ["/bin/sh", "-c", "rm -rf ~ / &"], [/* 0 vars */])= 0
kind of obvious that it relocates the ereet shellcode to .text

home help back first fref pref prev next nref lref last post