Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



Bugtraq: Re: identd hole?

Re: identd hole?

From: Dave G. <daveg_at_escape.com>
Date: Tue, 16 Jul 1996 10:15:49 -0400

As far as I know, there is no buffer overflow in atoi() under linux.
This rumor was started when there was a problem in some IRC clients. At
the time I took a look at atoi() and strtol(). Not only were there no
buffer overflows, there were no buffers at all :).

I haven't seen any evidence that he was actually hacked via ident.
Actually his description hasnt even explicitly stated that the intruder
got in.

Brett: You said you caught hime with a login process. Did the ps say
'login blah etc...' or 'bash' or 'sh' or 'tcsh'. Since you havent had a
chance to check it, you dont know whether he just managed to launch
denial of service attacks on it.
Received on Jul 16 1996

[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]
edgeos