OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
[Full-disclosure] CVE-2010-4435 - Multiple Vendor Calendar Manager Remote Code Execution

From: Rodrigo Rubira Branco (BSDaemon) (rodrigokernelhacking.com)
Date: Tue Feb 08 2011 - 15:12:38 CST


Dear List,

So finally all the vendors fixed this critical issue (remote code
execution).

As usual, here it goes the PoC to help in the exploitation. It works
against all the affected vendors, so just adjust your payload and have fun!

http://www.kernelhacking.com/rodrigo/exploits/cmsd_cve2010-4435.c

Regards,

Rodrigo (BSDaemon).

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/