Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



Bugtraq: Re: BIG Security Hole in Solaris 2.X (X)passwd + exploit

Re: BIG Security Hole in Solaris 2.X (X)passwd + exploit

From: Cy Schubert - ITSD Open Systems Group <cschuber_at_uumail.gov.bc.ca>
Date: Tue, 4 Mar 1997 09:08:36 -0800

> >An Exploit for a Big Big security hole in passwd ( + yppasswd and
> >nispasswd)
>
> I tried the exploit and it did not work in machines patched
> with 103187-09 (Solaris 2.5) or 103612-06 (Solaris 2.5.1).
>
> Could some verify this?

This particular exploit does not work, however it does cause a buffer
overflow and a subsequent bus error. It should be trivial to modify the
exploit to work on patched systems as well.

>
> --
> jukka

Regards, Phone: (250)387-8437
Cy Schubert Fax: (250)387-5766
UNIX Support OV/VM: BCSC02(CSCHUBER)
ITSD BITNET: CSCHUBER_at_BCSC02.BITNET
Government of BC Internet: cschuber_at_uumail.gov.bc.ca
                                       cschuber_at_bcsc02.gov.bc.ca
Received on Mar 04 1997

[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]
edgeos