[Full-Disclosure] Power Quest Deploy Center 5.5 boot disks

From: opticfiber (no email)
Date: 08/27/04

  • Next message: Andrew Farmer: "Re: Betr.: RE: [Full-Disclosure] Automated ssh scanning"
    To: <full-disclosure@lists.netsys.com>
    Date: Fri, 27 Aug 2004 6:49:37 -0000
    
    

    A vulnerability has been found in power quest deploy center 5.5 boot disks.
    Normally when creating a PQDI network boot disk, the administrator has the
    option to have the machine login to a domain controller to access a shared
    resource. Besides the authentication method using lm (insecure), a buffer
    overflow exists in stuffit.com.

    Stuffit.com is the control mechanism that allows the power quest boot disk
    to decode/decrypt stored password(s) in stuffit.dat. A typical line in the
    disks autoexec.bat file looks like: stuffit /f:stuffit.dat , this loads the
    stored password resident in memory. However, if this same command is
    repeated 4 or more times at the command prompt the program overflows,
    actually printing the clear text password right on the command prompt.

    William Reyor
    Topsight.net

    ________________________________________________
    This mail was sent by UebiMiau 2.5

    _______________________________________________
    Full-Disclosure - We believe in it.
    Charter: http://lists.netsys.com/full-disclosure-charter.html


  • Next message: Andrew Farmer: "Re: Betr.: RE: [Full-Disclosure] Automated ssh scanning"

    Relevant Pages

    • WinXP cmd prompt boot disk
      ... I'm looking for a method to create a windows xp boot disk that will ... boot to a command prompt and enable me to read an NTFS hdd. ... Using the 6 winxp startup floppies is no different from booting via the ...
      (microsoft.public.windowsxp.general)
    • Re: Boot.ini problem
      ... I at least need to get to a command prompt but if I hit enter after the error ... perhaps you're not booting off the cd correctly. ... boot disk on a working win xp computer. ... I can't remember what error you'll get if a partition is not active, ...
      (microsoft.public.windowsxp.help_and_support)
    • Re: Should I put a BOOT DISK on a Floppy or CD... ?
      ... doesn't get far enough into the boot-up process to allow for that. ... I will be making a boot-disk within the next day or two. ... if I create the boot disk, what do I do with it? ... Do I somehow activate the boot disk from a command prompt? ...
      (comp.sys.ibm.pc.hardware.storage)
    • SUPERNOVA VIRUS HELP!!!!!!!!!!!!!!
      ... to delete, boot to your e-boot disk, preferably a win 98 ... boot disk, and remove it from the command prompt using the ... >ways I know which deleting it through the Norton scna and ...
      (microsoft.public.windowsxp.security_admin)