OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Gabriel Rocha (grochageeksimplex.org)
Date: Thu Jul 12 2001 - 12:29:53 CDT

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    couple of points:
            1-It does not work for me;
                    
                    FreeBSD lorax.neutraldomain.org 4.3-RELEASE FreeBSD
                    4.3-RELEASE #0: Sat Jun 23 01:52:58 PDT 2001
                    rootlorax.neutraldomain.org:/usr/src/sys/compile/lorax
                    i386

            2-At first I tried it with /tmp mounted no-exec (thats what i
            have in fstab) I thought that was why the exploit didnt work,
            remounted /tmp without the no-exec flag and tried again. It
            still does not work, it hangs for hours on end, this last
            iteration has been running for a couple days now and nothing has
            come of it.

    Ideas on why it doesnt work? --gabe

    ,----[ On Thu, Jul 12, at 01:25PM, alexus wrote: ]--------------
    | is there any fix for that?
    |
    | > > about how long does the exploit run before giving you a root shell?
    | >
    | > Immediately. Shellcode calls /tmp/sh, not /bin/sh, so copy it to /tmp.
    `----[ End Quote ]---------------------------

    -- 
    

    "It's not brave if you're not scared."

    To Unsubscribe: send mail to majordomoFreeBSD.org with "unsubscribe freebsd-security" in the body of the message