RE: iDEFENSE Security Advisory 09.26.2002: Exploitable Buffer Overflow in gv

From: David Endler (dendler@idefense.com)
Date: 09/26/02


From: David Endler <dendler@idefense.com>
To: Boris Veytsman <borisv@lk.net>
Date: Thu, 26 Sep 2002 11:22:09 -0600 (MDT)


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Hi Boris,

> Does not work for me:
>
> boris@reston-0491:~/convert$ gv -v
> gv 3.5.8 (debian)
> boris@reston-0491:~/convert$ gv gv-exploit.pdf
> Segmentation fault
> boris@reston-0491:~/convert$ ls -al /tmp/itworked
> ls: /tmp/itworked: No such file or directory

I'll quote from the advisory:

"A proof of concept exploit for Red Hat Linux designed by zen-parse
is..."
                                ^^^^^^^^^^^^^

Other OS specific exploits (i.e. Debian, etc.) with the proper
alignments and offsets I imagine would be trivial to create.

- -dave

David Endler, CISSP
Director, Technical Intelligence
iDEFENSE, Inc.
14151 Newbrook Drive
Suite 100
Chantilly, VA 20151
voice: 703-344-2632
fax: 703-961-1071

dendler@idefense.com
www.idefense.com

-----BEGIN PGP SIGNATURE-----
Version: PGP 7.1.2
Comment: http://pgp.mit.edu:11371/pks/lookup?op=get&search=0x4B0ACC2A

iQA/AwUBPZNNy0rdNYRLCswqEQKl2QCffXscc4fz8HreXgVRMnXtPa3r9u4An2xY
Tkg2H+btMUk0zd4/Vy/u9iru
=b6Oz
-----END PGP SIGNATURE-----



Relevant Pages

  • Re: [OT] Call to arms...so to speak
    ... > "I just wonder how they would react if a even a portion of the Debian ... > The above quote clearly is inciting "a portion of the Debian ... and then refuse to sign up. ...
    (Debian-User)
  • [Full-Disclosure] A quote about "script kiddies"
    ... Here is a quote i found in NewOrder site (i was looking for fresh ... "A script kiddie is someone who thinks of code as ... i was using freebsd 5.1 but i like debian more, ... laptops with linux sound like the voice of a ...
    (Full-Disclosure)
  • Debian on Dell
    ... quote for my office. ... I want to run Debian on it. ... Dell which has good general Linux support as opposed to Red Hat support. ...
    (Debian-User)
  • Re: VoIP with Debian
    ... please quote accordingly. ... If you want personal help, ... I was just looking for someone I could talk to regarding debian ... > and voip, but really, this is a high volume list with many silly questions ...
    (Debian-User)
  • [SECURITY] [DSA-089-2] updated i386 icecast-server package
    ... Problem type: remote exploit ... In Debian Security Advisory DSA-089-1 we reported that icecast-server ... For details please see that advisory. ...
    (Bugtraq)