[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [Full-disclosure] FIXED CODE - IIS 6 Remote Buffer Overflow Exploit (was broken)
- To: full-disclosure@xxxxxxxxxxxxxxxxx
- Subject: Re: [Full-disclosure] FIXED CODE - IIS 6 Remote Buffer Overflow Exploit (was broken)
- From: dk <dk@xxxxxxxxxxxxxxxx>
- Date: Wed, 20 Apr 2005 14:24:46 -0500
Day Jay wrote:
Sorry, the previous code was broken.
Definitely `borken'... I didn't even see one /etc/passwd file in here!
Less obvious calls may catch more habitual FD code runners next time
dude. [think: ret=(int *)&ret+2;(*ret)=(int)shellcode;]
;-)
--
dk
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/