[Full-Disclosure] Re: Buffer Overflow in ActivePerl ?

overlord_q_at_hotmail.com
Date: 05/18/04

  • Next message: Thierry Carrez: "[Full-Disclosure] [ GLSA 200405-08 ] Pound format string vulnerability"
    To: full-disclosure@lists.netsys.com, bugtraq@securityfocus.com
    Date: Tue, 18 May 2004 13:08:31 -0500
    
    

    Oliver@greyhat.de wrote:

    > hi folks,
    >
    > i played around with ActiveState's ActivePerl for Win32, and crashed
    > Perl.exe with the following command:
    >
    > perl -e "$a="A" x 256; system($a)"
    >
    > I wonder if this bug isnt known?!? Because system() is a very common
    > command....
    > Can anybody reproduce this?
    >
    > I put together a little advisory on my website, including version
    > information and a debugger output (Drwatson):
    >
    > http://www.oliverkarow.de/research/ActivePerlSystemBOF.txt
    >
    >
    > PS: Due to travel activity, i will not be able to respond to mails
    > within the next 8 days!
    >
    > Regards,
    >
    > Oliver
    >
    >
    >
    http://www.perlmonks.org/index.pl?node_id=354145

    It's hard to tell, could be either a CRT or a perl (build) error as
    noted in the thread.

    _______________________________________________
    Full-Disclosure - We believe in it.
    Charter: http://lists.netsys.com/full-disclosure-charter.html


  • Next message: Thierry Carrez: "[Full-Disclosure] [ GLSA 200405-08 ] Pound format string vulnerability"

    Relevant Pages

    • [Full-Disclosure] Buffer Overflow in ActivePerl ?
      ... i played around with ActiveState's ActivePerl for Win32, ... Perl.exe with the following command: ... I wonder if this bug isnt known?!? ...
      (Full-Disclosure)
    • Buffer Overflow in ActivePerl ?
      ... i played around with ActiveState's ActivePerl for Win32, ... Perl.exe with the following command: ... I wonder if this bug isnt known?!? ...
      (Full-Disclosure)
    • Buffer Overflow in ActivePerl ?
      ... i played around with ActiveState's ActivePerl for Win32, ... Perl.exe with the following command: ... I wonder if this bug isnt known?!? ...
      (Bugtraq)
    • RE: [Full-Disclosure] Buffer Overflow in ActivePerl ?
      ... >I wonder if this bug isnt known?!? ... This buffer overflow is limited in terms of exploitation by two factors. ... ActivePerl does some cleanup on the first command item passed ...
      (Full-Disclosure)
    • Re: Cant delete files that end with period
      ... Type or paste this command and then hit your Enter key... ... The file name includes an invalid name in the Win32 name space ... the file name has a trailing space or a trailing period ... the trailing spaces or periods are stripped before the actual file ...
      (microsoft.public.windowsxp.general)