[prev in list] [next in list] [prev in thread] [next in thread] 

List:       bugtraq
Subject:    Re: Linux login buffer overflow
From:       "Dave G." <daveg () escape ! com>
Date:       1996-12-22 16:46:18
[Download RAW message or body]

After a quick look through, this doesnt look too dangerous.  I doubt someone
could get it to exec a shell.

Same reason why rlogin was unexploitable, main never returns, only exits.
However, it is still a potential problem, just not another return address
overwrite.

Dave G.
<daveg@escape.com>
http://www.escape.com/~daveg

[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic