|
|||||||||||
|
format strings vulns in /bin/login and /usr/bin/passwd
From: Faulty(at)b0f.net www.b0f.net <Faulty(at)b0f.net>
Date: Sun Jan 26 2003 - 03:19:59 EST ('binary' encoding is not supported, stored as-is) Hello while doing a scan for format strings vulns on util-linux package it came back with the following results. ./login.c:398 FUNC fprintf
./passwd.c:161 FUNC printf
There is also a few other on other programs but i thought these 2 would be most important since passwd is suid and login could be exploited remotly. I am not very experianced in format strings any help/commets would be great. Would these be able to get exploited? Regards Faulty@b0f.net www.b0f.net Received on Mon Jan 27 12:00:46 2003 This archive was generated by hypermail 2.1.8 : Wed Aug 23 2006 - 14:07:37 EDT |
||||||||||
|
|||||||||||