Full Disclosure mailing list archives

Re: FIXED CODE - IIS 6 Remote Buffer Overflow Exploit (was broken)


From: dk <dk () pwarchitects com>
Date: Wed, 20 Apr 2005 14:24:46 -0500

Day Jay wrote:
Sorry, the previous code was broken.

Definitely `borken'... I didn't even see one /etc/passwd file in here! Less obvious calls may catch more habitual FD code runners next time dude. [think: ret=(int *)&ret+2;(*ret)=(int)shellcode;]

;-)


--
dk
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Current thread: