OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: [Full-disclosure] LSADump2 Crashing Windows

From: Nicolas RUFF (nicolas.ruffgmail.com)
Date: Mon Sep 05 2005 - 06:55:11 CDT


> This is a bug in lsadump2 - there's a type mismatch in one of the
> functions, although I forget which one. Something is a pointer which
> shouldn't be, or vice versa. Once you fix that, it'll be good to go.

I also noticed that LSADump is *not* compatible with a NX-enabled
Windows, because the allocated memory where the code is injected is not
flagged as "executable".

The same problem affects Cain (www.oxid.it), for (I guess) it reuses the
same code.

Regards,
- Nicolas RUFF
Security Researcher EADS-CCR
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/