On Tue, 2004-09-14 at 12:40, aley_at_consolbyexpotel.com wrote:
> Anybody know of any code/tools to exploit the Apache chunking integer
> overflow with Apache 1.3.9 on digital Unix? I'm looking for a bit of
> assistance with a pen-test.
I don't know of any specific tools. But, if Digital Unix does not
implement it's memcpy in a similar way as BSD (i.e. it mimics the
behavior of memmove), this may not be possible.
- YY
They that give up essential liberty to obtain a little temporary safety
deserve neither liberty nor safety.
- Benjamin Franklin
Received on Sep 15 2004