[2046] in bugtraq

home help back first fref pref prev next nref lref last post

Re: Security Problem ftpd (includes wu.ftpd 2.4 and 2.4.2 beta 4)

daemon@ATHENA.MIT.EDU (Jas (Matthew K))
Thu Jul 13 19:07:20 1995

Date:         Thu, 13 Jul 1995 23:51:43 +1000
Reply-To: Bugtraq List <BUGTRAQ@CRIMELAB.COM>
From: "Jas (Matthew K)" <matt@uts.EDU.AU>
X-To:         BUGTRAQ@CRIMELAB.COM
To: Multiple recipients of list BUGTRAQ <BUGTRAQ@CRIMELAB.COM>
In-Reply-To:  <9507121959.AA1119@worldcom-18.worldcom.com> from "Dan Thorson"
              at Jul 12, 95 12:49:05 pm

Dan Thorson wrote this...

> Am I correct in stating that this problem only occurs on SVR4 based unix's
> [where /proc exists]?  Or would, say, SunOS 4.1.x be affected?

svr4 has nowhere near the "features" of linux's /proc fs. svr4 merely
has the memory space of the process available (a few other tid bits
can be acquired from the file handle with a few judicious
ioctl()'s). but on the other hand under linux you can read the tea
leaves from the second last cup of tea consumed by the grandmother of
any given process, quite a remarkble feat... :)

> dct

                        Matt
--
#!/bin/sh
echo '16i[q]sa[ln0=aln100%Pln100/snlbx]sbA0D3F204445524F42snlbxq'|dc;exit
Matthew Keenan   Systems Programmer   Information Technology Division
      University of Technology     Sydney Australia

It's nice to be in a position where people apologize because they
assume there's humor in your work, based on past experience,
but they're not sure where it is. -- Rob Pike

home help back first fref pref prev next nref lref last post