Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



Vulnerability Development: potential chage ovf

potential chage ovf

From: m4rcyS <marcys_at_FREE.COM.PL>
Date: Wed, 17 Nov 1999 15:01:24 +0100

I've found that chage (+s, rh 6.1) strcpy()'s lines from /etc/passwd.
I've no sources by my hand but I think there's possibility to overflow
chage with the GECOS field ...

greetz,
____________________________________________________________
                              m4rcyS

                   email: marcys_at_free.com.pl, m_at_sh.pl

"I think there is a world market for maybe five computers."
                     - Thomas Watson, chairman of IBM, 1943
------------------------------------------------------------
Received on Nov 18 1999

[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]
edgeos