[Full-Disclosure] *BSD passlogd remote root exploit.

dong-h0un U xploit at hackermail.com
Sun Apr 6 10:52:49 BST 2003


Made out *BSD exploit.
It works in OpenBSD 3.0, FreeBSD 4.6.2-RELEASE.

For reference, FreeBSD includes passlogd-0.1d port:
http://www.freebsd.org/cgi/cvsweb.cgi/ports/net/passlogd/

Proof of Concept exploit:
http://x82.inetcop.org/h0me/c0de/0x82-Remote.XxxxBSD_passlogd.xpl.c


--
Thank you.


-- 
_______________________________________________
Get your free email from http://www.hackermail.com

Powered by Outblaze



Full-Disclosure is hosted and sponsored by Secunia.