[2175] in bugtraq

home help back first fref pref prev next nref lref last post

Re: [8lgm]-Advisory-22.UNIX.syslog.2-Aug-1995

daemon@ATHENA.MIT.EDU (Rob J. Nauta)
Wed Aug 30 02:33:26 1995

Date:         Tue, 29 Aug 1995 15:03:13 +0200
Reply-To: Bugtraq List <BUGTRAQ@CRIMELAB.COM>
From: "Rob J. Nauta" <rob@IAEhv.nl>
X-To:         BUGTRAQ@CRIMELAB.COM
To: Multiple recipients of list BUGTRAQ <BUGTRAQ@CRIMELAB.COM>
In-Reply-To:  <199508290133.CAA15517@8lgm.org> from "[8LGM] Security Team" at
              Aug 29, 95 02:33:37 am

[8LGM] Security Team dared to write:
>
>                [8lgm]-Advisory-22.UNIX.syslog.2-Aug-1995
>REPEAT BY:
>        We have written an example exploit to overwrite syslog(3)'s
>        internal buffer using SunOS sendmail(8).  However due to the
>        severity of this problem, this code will not be made available
>        to anyone at this time.  Please note that the exploit was fairly
>        straightforward to put together, therefore expect exploits to be
>        widely available soon after the release of this advisory.

If it's so straightforward, let's have it ! I want to check my linux and
my ISP's FreeBSD. Bugtraq is FULL DISCLOSURE !! So, please post source/
scripts now !

Rob
--
 _   _
((___))                 Rob J. Nauta
[ x x ]                 rob@iaehv.nl
 \   /                  040-837549
 (' ')                  Check out http://www.iaehv.nl/iae/people/rob/index.html
  (U)   Free Mitnick !

home help back first fref pref prev next nref lref last post