.:[ packet storm ]:.
                         
all things security
all things security

 Section:  .. / 0102-exploits  /

Some of these exploits are from Bugtraq

Page 1 of 2
<< 1 2 >> Files 1 - 25 of 35
Currently sorted by: File NameSort By: Last Modified, File Size

 ///  File Name: 0102-exploits.tgz
Description:
Packet Storm new exploits for February, 2001.
File Size:557030
Last Modified:Apr 10 22:51:02 2001
MD5 Checksum:e43135e7e3cc9c37b8531f6ec918648a

 ///  File Name: bind8x.c
Description:
Bind prior to 8.2.3-REL remote root exploit - exploits the named INFOLEAK and TSIG bug. Includes shellcode for Linux. Slightly broken.
Author:Ix, Lucysoft
File Size:15837
Last Modified:Feb 10 01:30:46 2001
MD5 Checksum:c4f9cc6d4b7bc657ff22984adf7d206c

 ///  File Name: bugtraq.c
Description:
Bugtraq.c is an exploit for the Bind tsig bug which has been crippled somewhat. Tested against Slackware 7.0.
Author:Count Neithardt von Gneisenau
File Size:10013
Last Modified:Feb 6 02:19:36 2001
MD5 Checksum:f406011573813d6eb463e3616775397d

 ///  File Name: cobull.c
Description:
Merant Micro Focus Cobol 4.1 local root exploit - Writes to /var/mfaslmf/nolicense.
Author:Sagi
Homepage:http://www.idiotbox.co.il
File Size:1164
Last Modified:Feb 21 21:46:28 2001
MD5 Checksum:cda9670c0ba5d6b9f1195c7b8e3fa2e4

 ///  File Name: dc20ctrlex.perl
Description:
Dc20ctrlex.perl is a FreeBSD 3.x/4.X /usr/local/bin/dc20ctrl local exploit which gives egid=dialer or root on non-freebsd systems. Tested against FreeBSD 4.2.
Author:Dethy
Homepage:http://www.synnergy.net
File Size:1402
Last Modified:Feb 14 08:34:43 2001
MD5 Checksum:9d658bc02da0498ea3f0146d905dd9af

 ///  File Name: dc20exp.c
Description:
Dc20ctrl local exploit for FreeBSD - exploits a call to getenv() in session.c giving a gid=dialer shell.
Author:Mray
File Size:1930
Last Modified:Feb 14 06:57:47 2001
MD5 Checksum:cc98ffd5418eb7c676bef76c1231d1f2

 ///  File Name: defcom.easycom.txt
Description:
Defcom Labs Advisory def-2001-06 - The Easycom/Safecom print server from I-Data International contains multiple vulnerabilities that allow a malicious user to bring down the print server. Execution of arbitrary code is also possible. Tested against Easycom/Safecom, firmware v404.590.
Author:Defcom Labs
Homepage:http://www.defcom.com
File Size:2646
Last Modified:Feb 3 00:14:42 2001
MD5 Checksum:ff7e56247e2414c0c4d933c41bf3bafd

 ///  File Name: defcom.goodtech.ftp.txt
Description:
Defcom Labs Advisory def-2001-03 - The GoodTech FTP server v3.0.1.2.1.0 does not properly free resources. This can result in the FTP server either crashing or displaying its banner and immediately disconnecting the user.
Author:Defcom Labs
Homepage:http://www.defcom.com
File Size:1765
Last Modified:Feb 3 00:03:56 2001
MD5 Checksum:865461fb58da12a8ca2fa91c4d580545

 ///  File Name: defcom.netscape-enterprise.txt
Description:
Defcom Labs Advisory def-2001-04 - The Netscape Enterprise Server 4.1, SP5 has a problem dealing with dotdot-URLs which allows remote users to crash the server.
Author:Defcom Labs
Homepage:http://www.defcom.com
File Size:2231
Last Modified:Feb 3 00:05:39 2001
MD5 Checksum:56595144d952680f368ede97ce17ea29

 ///  File Name: defcom.netscape-fasttrack.txt
Description:
Defcom Labs Advisory def-2001-05 - Netscape Fasttrack Server 4.1 for Windows NT 4.0 has problems with its caching module. The problem can result in remote users consuming all the server memory and causing the server to perform very sluggishly.
Author:Defcom Labs
Homepage:http://www.defcom.com
File Size:1720
Last Modified:Feb 3 00:07:51 2001
MD5 Checksum:99e0fc6a08ba1f82da32b5184da1707e

 ///  File Name: exklock.c
Description:
FreeBSD X key lock (xklock) v2.7.1 and below local root exploit - Tested on FreeBSD ports collection v3.5.1 and v4.2.
Author:Dethy
Homepage:http://www.synnergy.net
File Size:1596
Last Modified:Feb 21 21:43:21 2001
MD5 Checksum:c5a5aabc95055e9049edae3b5c5de143

 ///  File Name: frel-1.0.beta.tgz
Description:
Frel-1.0 is a modified version of fragrouter, used to evade NIDS. The frag proxy can run on the same machine as the attacker. It can also run in partial takeover mode, so that the fragmented attack stream seems to be coming from another active machine on the same physical subnet. The neighbor machine runs normally except for the ports being used by attacker. Mods by Lorgor
File Size:416098
Last Modified:Feb 3 00:12:49 2001
MD5 Checksum:54f511a94e5997a3e1766ab4eb609cd3

 ///  File Name: hhp-gdc_smash.c
Description:
Hhp-gdc_smash.c is a local root exploit for gdc. Requires group wheel access. Tested on BSDI 4.1 x86 default install.
Author:Loophole
Homepage:http://www.hhp-programming.net
File Size:2822
Last Modified:Mar 6 01:28:05 2001
MD5 Checksum:efae2c2cea50f03e11330ec67729ea53

 ///  File Name: hhp-ospf_smash.c
Description:
Hhp-ospf_smash.c is a local root exploit for ospf_monitor. Tested on BSDI 4.1 x86 default install.
Author:Loophole
Homepage:http://www.hhp-programming.net
File Size:3197
Last Modified:Mar 6 01:22:58 2001
MD5 Checksum:b41b1c1bc193511d950a1c291c22c23f

 ///  File Name: imapd_exploit.c
Description:
A remotely exploitable stack overflow has been discovered in Imapd v12.264 and below in the handling of the lsub command. Since an account is required, mail only users will be able to get shell access. Tested against Slackware 7.0, 7.1, Redhat 6.2, and Conectiva Linux 6.0. Fix available here.
Author:Felipe Cerqueira
Homepage:http://www.BufferOverflow.Org
File Size:7772
Last Modified:Feb 24 02:26:19 2001
MD5 Checksum:8cb7018cec6491d94289309fa80cb3f8

 ///  File Name: Infobot-0.44.5.3.txt
Description:
Infobot v0.44.5.3 and below contains vulnerabilities which allow remote users to execute commands due to an insecure open call.
Author:Samy Kamkar
Homepage:http://www.pdump.org
File Size:2775
Last Modified:Feb 12 04:46:49 2001
MD5 Checksum:abd99f30f80cf7bce705f6763a7ac850

 ///  File Name: jazip-exploit.pl
Description:
Jazip v0.32-2 local root exploit - Takes advantage of a buffer overflow in the Xforms library.
Author:Telehor
Homepage:http://teleh0r.cjb.net
File Size:2248
Last Modified:Feb 2 03:38:18 2001
MD5 Checksum:4d42d0a1d400577b734e43c3e01d9579

 ///  File Name: man-cgi.txt
Description:
Man-cgi v1.3 and v2.0 contains remote vulnerabilities which allow any file on the web server to be viewed, and some implementations allow remote command execution due to lack of filtering of hex encoded characters. Exploit URL's included.
Author:Krfinisterre
File Size:3923
Last Modified:Feb 27 00:30:21 2001
MD5 Checksum:3245d6534465bdf950b124781e2eba7f

 ///  File Name: Netscape.Publisher.ACL.txt
Description:
Netscape Enterprise Server 3.5.1 (Publisher) has a problem with the default ACL settings that could allow an intruder to view/download "non-public" files in the web root.
Homepage:http://www.netscape.com
File Size:2192
Last Modified:Feb 12 04:52:37 2001
MD5 Checksum:606350da577109d146a4a0d63edb271d

 ///  File Name: p-smash.c
Description:
P-smash.c is an exploit that uses 50 percent of the CPU on windows 98 machines and causes windows 95 machines to slow down by sending ICMP type 9 code 0 packets.
Author:Paulo Ribeiro
File Size:3186
Last Modified:Feb 12 04:22:09 2001
MD5 Checksum:003642b21a623125acc24e65efa3c22b

 ///  File Name: pkc001.txt
Description:
PKC Security Advisory #1 - The Oops proxy server 1.4.22, 1.4.6, and prior contain a remotely exploitable heap overflow. Includes PKCoops-ex.c, a proof of concept exploit tested on Slackware 7.0.
Author:Cyrax
Homepage:http://www.pkcrew.org
File Size:10519
Last Modified:Feb 2 22:36:47 2001
MD5 Checksum:513a02ac5db3c03eb6bb76a85ed459ee

 ///  File Name: pkc002.txt
Description:
PKC Security Advisory #2 - Tinyproxy version 1.3.2 and 1.3.3 has a remotely exploitable heap overflow. Includes PKCtiny-ex.c proof of concept exploit.
Author:Cyrax
Homepage:http://www.pkcrew.org
File Size:6544
Last Modified:Feb 2 22:39:18 2001
MD5 Checksum:061a37587f330bb27e6fb68037bce07c

 ///  File Name: pkc003.txt
Description:
PKC Security Advisory #3 - Micq-0.4.6 contains remotely exploitable buffer overflows which allow running arbitrary code with the UID/GID of the user running micq. Includes micRAq.c, linux/x86 proof of concept exploit.
Author:The Recidjvo
Homepage:http://www.pkcrew.org
File Size:16755
Last Modified:Feb 2 22:42:17 2001
MD5 Checksum:24a010e9979e0021bf0ee38824eeeb7d

 ///  File Name: pkc004.txt
Description:
PKC Security Advisory #4 - Icecast v1.3.8beta2 and prior contains remotely exploitable format string bugs which allow remote code execution with the UID/GID of the user running Icecast. Includes PKCicecast-ex.c, a remote proof of concept exploit tested against Icecast 1.3.7 on Slackware 7.0 and RedHat 7.0.
Author:Cyrax
Homepage:http://www.pkcrew.org
File Size:8329
Last Modified:Feb 2 22:46:22 2001
MD5 Checksum:d2baf97ccaf7099542435cfd6ae71298

 ///  File Name: prodbx.c
Description:
Progress Database Server v8.3b local root exploit - Tested on Sco Unix and Linux.
Author:The Itch
Homepage:http://bse.die.ms
File Size:3524
Last Modified:Feb 2 20:13:05 2001
MD5 Checksum:0802fc897a4714f01406446c05c2c949