SuSE 7.2 (& others) sendmail local xploit

From: RoMaN SoFt / LLFB!! (roman@madrid.com)
Date: 08/26/01


From: RoMaN SoFt / LLFB!! <roman@madrid.com>
To: grange@rt.mipt.ru
Subject: SuSE 7.2 (& others) sendmail local xploit
Date: Sun, 26 Aug 2001 11:45:39 +0200
Message-ID: <p4hhotchomkuo6s8pusabrdsf3nvh42vfn@4ax.com>



 Hi.

 This is the 'alsou.c' sendmail 8.11.x (x<=5) xploit with some very
slight modifications:
 - extensive documentation and example on how to get this to work on
several distros / sendmail versions
 - working on default SuSE 7.2 (sendmail 8.11.3):
 - also included working parameters for SuSE 6.4 with *custom
compiled* sendmail 8.11.2:
 - allows to give offset in command line. Use with 'smxploit' script
(also included) in order to find correct offset. This will be
necessary in different distros / sendmail versions
- QUICK GUIDE for finding propper exploitation values (VECT, GOT and
OFFSET):
 ==> CASE A: Non-stripped binary:
 ==> CASE B: Stripped binary (this is the default on several distros):

 Please read complete alsou2.c comment lines for the whole
explanation.

 Regards,

=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=
    ** RoMaN SoFt / LLFB **
       roman@madrid.com
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~






Relevant Pages

  • [SLE] Damage control out of E-Mail system of SuSE-9.0
    ... Email system development within SuSE. ... In the old days with sendmail. ... Hugh ...
    (SuSE)
  • Re: OpenSuse Update: =?UTF-8?Q?unverst=C3=A4ndliches?= Verhalten
    ... selbst keine SuSE mehr (und kann daher zu den aktuelleren nicht viel sagen ... Ich hatte innerhalb eines Wochenendes hintereinander die ... waere das Upgrade von sendmail wohl ... Erst von openSuSE 10.2 zu 10.3 habe ich eine Neuinstallation ...
    (de.comp.os.unix.linux.misc)
  • Re: SuSE & email
    ... afaik SuSE comes with sendmail. ... simply use a pstree to see if sendmail is already running. ... Also you might want to upgrade to 8.2 or (what I recommend) Debian3.r1 ... > Goal is to setup Mutt and also have an email server for my domain name. ...
    (alt.os.linux.suse)
  • Re: [SLE] Suse 9.3 and sendmail woes
    ... That was a nice surprise. ... Noticed that the default mc file on suse 9.3 has everything commented ... Sendmail is almost ready to go right out of the box. ... Since I have sendmail running on a Mandrake box I was ...
    (SuSE)
  • Re: [SLE] IMAP HowTo (was re: POP Mail HOWTO?)
    ... the problem still persists in Suse 10.x? ... I'm a convert to dovecot for pop3, pop3s, imap, and imaps. ... I'm tolerating postfix, but if it gives me any more lip I'm going ... solve all the problems of sendmail and created a whole new set ...
    (SuSE)