Bugtraq mailing list archives
r00t Advisory [ LitterMaid Race Condition ]
From: x () CDC NET (X)
Date: Sat, 7 Mar 1998 20:08:51 -0500
r00t advisory [ LitterMaid Race Condition ] [ Mar 7 1998 ] -- Platform: LitterMaid Deluxe Self-Cleaning Litter Box -- Program: LitterMaid automatic sifting comb -- Info: This advisory is in memory of "bugs" the r00t cat and official r00t mascot. -- Synopsis: A vulnerability exists in the LitterMade Deluxe Self-Cleaning Litter Box automatic sifting comb that can kill or severely injure your cat and/or kitten forcing the administrator to find a new best friend. -- Exploit: This vulnerability should be widely distributed to all security experts because r00t knows that the average BUGTRAQ reader's best friend is their cat. When a feline enters the LitterMaid litter box and does its business, the automatic sifting comb rakes the hardened excrement and or urine into a storage container for later disposal. A race condition exists when the comb is on its way back to the original position. If the cat is in the box when the comb is moving back, it can get caught between the back of the LitterMaid and the comb, thus crushing the cat. -- Fixes: To follow r00t's workaround tradition, we recommend that you downgrade to a cardboard box and some sand. r00t -- rooting machines to own your dreams http://www.r00t.org Don't forget: Summercon X in Atlanta, GA see http://www.summercon.org for details
Current thread:
- another /tmp race: `perl -e' opens temp file not safely stanislav shalunov (Mar 07)
- Re: another /tmp race: `perl -e' opens temp file not safely Dennis Taylor (Mar 07)
- Re: another /tmp race: `perl -e' opens temp file not safely Theo de Raadt (Mar 07)
- Re: another /tmp race: `perl -e' opens temp file not safely stanislav shalunov (Mar 07)
- Re: another /tmp race: `perl -e' opens temp file not safely Theo de Raadt (Mar 07)
- Re: another /tmp race: `perl -e' opens temp file not safely stanislav shalunov (Mar 08)
- Re: another /tmp race: `perl -e' opens temp file not safely Theo de Raadt (Mar 08)
- r00t Advisory [ LitterMaid Race Condition ] X (Mar 07)
- Re: another /tmp race: `perl -e' opens temp file not safely stanislav shalunov (Mar 08)
- Re: another /tmp race: `perl -e' opens temp file not safely Theo de Raadt (Mar 08)
- Updated list of crypto and security courses Avi Rubin (Mar 09)
- *sigh* another RH5 /tmp problem Mark A. Spencer (Mar 09)
- Re: *sigh* another RH5 /tmp problem Erik Troan (Mar 10)
- Re: Linux libc5 'bug' in mkstemp(). Andreas Jaeger (Mar 10)
- Re: another /tmp race: `perl -e' opens temp file not safely stanislav shalunov (Mar 07)
- Linux libc5 'bug' in mkstemp(). Greg Alexander (Mar 09)
- Re: Linux libc5 'bug' in mkstemp(). Casper Dik (Mar 10)
- Re: Plaintext passwords in Chase Online Banking dorqus maximus (Mar 08)