|
Vulnerability Development
mailing list archives
Re: /usr/bin/Mail buffer 0verfl0w
From: Lukasz Kowalczyk <neos () CAFE DABROWA PL>
Date: Thu, 1 Mar 2001 17:20:10 +0100
Hmm I Have a Mail 8.1 too , and i my version all is ok .
I dont know why . Ive tested it on 4 other`s servers and all was ok too.
I Was tested this problem on :
Slackware 7.1
Suse 7.0
PLD ( Polish Linux Distribution;)
--------------------
Neos
neos () cafe dabrowa pl
--------------------
On Wed, 28 Feb 2001, SosPiro wrote:
I found a buffer oveflow in /usr/bin/Mail,it's suid by default on my
Slakware 7.00 K2.2.13
This is the problem:
SunsetZer0:#Mail
Mail version 8.1 6/6/93. Type ? for help
"/var/spool/mail/root": 2 messages 2 unread
U 1 root Thu Sep 15 02:23 33/1257
"hole in /usr/bin/Mail"
U 2 sospiro Sat Oct 9 18:19 126/6192
"Owned!Owned!"
& t 0 x 2240
0:Invalid message number
"Source" stack over-pop
Segmentation Fault
sospiro
"ALl We WaNt is T0 bE HapPy"
---------------------------------
By Date
By Thread
Current thread:
- Re: /usr/bin/Mail buffer 0verfl0w, (continued)
Re: /usr/bin/Mail buffer 0verfl0w Markus (Mar 01)
Re: /usr/bin/Mail buffer 0verfl0w Lukasz Kowalczyk (Mar 01)
Re: /usr/bin/Mail buffer 0verfl0w K2 (Mar 01)
|