SUMMARY: Solaris ps vulerability

From: Mike Carson (Mike.Carson@telos.com)
Date: Wed Aug 13 1997 - 15:09:16 CDT


Thanks to everyone who responded, including:
bobf@psa.pencom.com
medaglia@testmail.putnaminv.com
pascal@viper.istar.ca
tim@santafe.edu
Ken.McKinlay@lmco.com
jharmon@telecnnct.com
mfrisch@saturn.tlug.org

Original Question:
        Can anyone point me information on how to exploit the stack overflow
problem in ps under Solaris 2.4? I need to demnstrate to management
that it's a real problem.

Solution:
The l0pht advisories section has an information paper on buffer
exploits in general, written by Mudge
- suggested by medaglia@testmail.putnaminv.com
http://www.dhp.com/~fyodor/sploits/solaris.ps.and.chkey.data.buffer.over
run.html has very detailed information on the ps exploit.
- suggested by pascal@viper.istar.ca
http://www.opensite.com.br/~flash/phrack/49/14.html contains an article
call Smashing the Stack
- suggested Ken.McKinlay@lmco.com

Thanks again, everyone!

Cheers,
Michael



This archive was generated by hypermail 2.1.2 : Fri Sep 28 2001 - 23:12:00 CDT