View previous topic :: View next topic |
Author |
Message |
Cypres n00b
Joined: 15 Jun 2004 Posts: 6
|
Posted: Tue Jun 15, 2004 4:24 pm Post subject: Need Format String exploit on Gentoo for presentation |
|
|
Hi there,
At First: sorry for my bad english, i give my best
I am a student of computer science and i have to make a presentation of the Format String Bug with my own laptop (OS:Gentoo 2.4).
The Problem:
Is there any exploit to a programm (best case: remote) based on the Format String Bug which is tested under gentoo??
Thanks for all answers
Best greets
Cypres |
|
Back to top |
|
|
jkcunningham l33t
Joined: 28 Apr 2003 Posts: 649 Location: 47.49N 121.79W
|
Posted: Tue Jun 15, 2004 5:49 pm Post subject: |
|
|
Interesting question. It poses a delemma: how do we know you aren't looking to actually exploit a remote computer? |
|
Back to top |
|
|
Cypres n00b
Joined: 15 Jun 2004 Posts: 6
|
Posted: Tue Jun 15, 2004 6:08 pm Post subject: |
|
|
Well good question?
How can I explain you that i am a good boy?!
Not at all
But i insure all that i stand on the good side
you can set one remark:
My main search is a exploit which already exists for a program which is tested on gentoo!
By the way:
If a (format string) exploit works under Red Hat 8.0, works the same one on gentoo as well??
Thanks for answers
Cypres |
|
Back to top |
|
|
F.Ultra Apprentice
Joined: 17 Mar 2004 Posts: 169 Location: Sweden
|
Posted: Tue Jun 15, 2004 6:34 pm Post subject: |
|
|
These kinds of exploits, generally, has to do with the application in quistion and not the system it is running on. If you find a version of an application voulnerable to this exploit under Red Hat, then the same application with the same version would be voulnerable under Gentoo unless someone on Gentoo has patched the ebuild. But if so then simply copy the application from the Red Hat installtion to the Gentoo one and you have what you are looking for.
Btw, if you do find such a voulnerable application, please let the developer/maintainer know so it can be patched. |
|
Back to top |
|
|
|