[Full-Disclosure] Resources for exploit coding on Solaris

From: fabio (fabio_at_crearium.com)
Date: 09/29/04

  • Next message: Alan J. Wylie: "Re: [Full-Disclosure] FW: [Fwd: How one can become a terrorist?]"
    To: full-disclosure@lists.netsys.com
    Date: Tue, 28 Sep 2004 22:44:45 -0600
    
    

    Hi.

    I would like to know resources (web pages, documents, mailing lists)
    about exploit coding on Solaris sparc. I want to understand security
    bugs in Solaris sprac. the idea is know how the exploits work on this
    architecture and the impact of security flaws from a developer point of
    view. I want to know solaris internals and how malicious code works.

    All the documents avalible refers to linux and intel architecture. For
    example, I want to do a university project about latest Xsun
    vulnerability. I dont have documents and resources.

    Any link or comment is welcome.

    Thanks in advance.

    _______________________________________________
    Full-Disclosure - We believe in it.
    Charter: http://lists.netsys.com/full-disclosure-charter.html


  • Next message: Alan J. Wylie: "Re: [Full-Disclosure] FW: [Fwd: How one can become a terrorist?]"

    Relevant Pages

    • [NEWS] Hardening Solaris for MGC
      ... The following security advisory is sent to the securiteam mailing list, and can be found at the SecuriTeam web site: http://www.securiteam.com ... The Media Gateway Controller product is installed on top of Solaris ... In the default installation, Solaris has several known ... Since vulnerabilities are in the underlying Operating System customers do ...
      (Securiteam)
    • [UNIX] Remote Root Exploitation of Default Solaris sadmind Setting
      ... Get your security news from a reliable source. ... its Solaris operating system to help administrators manage systems ... The sadmind daemon is used by Solstice AdminSuite applications to ... documented to some extent in Sun documentation, ...
      (Securiteam)
    • [EXPL] Solaris Xlock Heap Overflow Vulnerability (Exploit, XUSERFILESEARCHPATH)
      ... Solaris Xlock Heap Overflow Vulnerability ... The following security advisory is sent to the securiteam mailing list, and can be found at the SecuriTeam web site: http://www.securiteam.com ... * sol_x86_xlockex.c - Proof of Concept Code for xlock heap overflow bug. ...
      (Securiteam)
    • Cisco Security Advisory: Hardening of Solaris OS for MGC
      ... Solaris operating system. ... In order to guarantee the stability of the application Cisco must ... The second issue is the security of the default Solaris installation. ...
      (Bugtraq)
    • [UNIX] William LeFebvre "top" Format String Vulnerability
      ... Get your security news from a reliable source. ... Over four years later the vulnerability ... bug and the issue has since been patched. ... OpenBSD, FreeBSD, SCO Skunkware, and Solaris have all been subject to this ...
      (Securiteam)