This Metasploit module exploits a stack overflow in Borland InterBase by sending a specially crafted create request.
d17ecb0c8825e699cbfc4ab9d9342164This Metasploit module exploits a stack overflow in Borland InterBase by sending a specially crafted create request.
9b3d806b79e920c84b6bc3eb29bcf061This Metasploit module exploits a stack overflow in Borland InterBase by sending a specially crafted service attach request.
1ea324be8ea8e7ff7f474978dc9d54e0This Metasploit module exploits a stack overflow in Borland InterBase by sending a specially crafted attach request.
a309e699ae44406d74ac0fa0e8c0da85This Metasploit module exploits a stack overflow in Borland InterBase by sending a specially crafted create request.
ff7271f28dbab6b339eb80b560771d39This Metasploit module exploits a stack overflow in Borland InterBase by sending a specially crafted service attach request.
221842da93044ac6124e2e9fcd093224This Metasploit module exploits a buffer overflow vulnerability in adm_build_path() function of sadmind daemon.
445586327b6a99350a42708bd196facbThis Metasploit module triggers a heap overflow in the LSA RPC service of the Samba daemon. This module uses the TALLOC chunk overwrite method (credit Ramon and Adriano), which only works with Samba versions 3.0.21-3.0.24. Additionally, this module will not work when the Samba "log level" parameter is higher than "2".
8f84f393fa7096a43ae30b92fc8df61dThis Metasploit module exploits a stack overflow in Borland InterBase by sending a specially crafted attach request.
20990f30e3c1bca0c41eb265d3de6ca7This Metasploit module exploits a stack overflow in Borland InterBase by sending a specially crafted attach request.
f6c842774ee783e5ac3505f466abf25eThis Metasploit module exploits a stack overflow in Borland InterBase by sending a specially crafted create request.
66eb6005ee3f9ffc7a052a19a632ee73This Metasploit module exploits a stack overflow in Borland InterBase by sending a specially crafted service attach request.
039beeb0e71e77b3753f7a53673f30bcThis Metasploit module exploits a buffer overflow vulnerability in _tt_internal_realpath function of the ToolTalk database server (rpc.ttdbserverd).
4af2f95d784a4fac1e32d121150eedbcToolTalk suffers from a rpc.ttdbserverd _tt_internal_realpath related buffer overflow vulnerability. IBM AIX versions 5.1.0 through 6.1.3 appear affected.
419e81bb2e4ca5dac3f2b938870caa9eThere exists a vulnerability within a function of the Sun Solstice AdminSuite sadmind, which when properly exploited can lead to remote compromise of the vulnerable system.
12d9f6f3f9a69ac51832156de1c101daThere exists a vulnerability within an architecture dependent function of the Apple Mac OS X 10.4.x kernel, which when properly exploited can lead to local compromise of the vulnerable system. Proof of concept code included.
f7cb9a678cad1e52e9b8323a667b2f32There exists multiple vulnerabilities within functions of Firebird Relational Database, which when properly exploited can lead to remote compromise of the vulnerable system.
753f638ff1f38bd6f940a2b2e36a9a86There exists multiple vulnerabilities within functions of Borland InterBase, which when properly exploited can lead to remote compromise of the vulnerable system.
85a799f75c832790b0ad9494e597ebd7This Metasploit module exploits a stack overflow in Borland Interbase 2007 by sending a specially crafted create request.
3ef34ee4eb779dc56090ec465f15b7e8This Metasploit module triggers a heap overflow in the LSA RPC service of the Samba daemon. This module uses the szone_free() to overwrite the size() or free() pointer in initial_malloc_zones structure. OSX version.
1489b440c6e816a74e273d76060e724fThis Metasploit module triggers a heap overflow in the LSA RPC service of the Samba daemon. This module uses the TALLOC chunk overwrite method (credit Ramon and Adriano), which only works with Samba versions 3.0.21 through 3.0.24. Additionally, this module will not work when the Samba "log level" parameter is higher than "2". Solaris version.
9f07c9cd8fd013c9608f103024c1c839This Metasploit module triggers a heap overflow in the LSA RPC service of the Samba daemon. This module uses the TALLOC chunk overwrite method (credit Ramon and Adriano), which only works with Samba versions 3.0.21 through 3.0.24. Additionally, this module will not work when the Samba "log level" parameter is higher than "2". Linux version.
4f3d9021ab7aeab8ee51f9ee5605ad0cRemote exploit that makes use of overflows in versions 0.4.4 and below of LCDproc's daemon.
7196f50ff2b0c806cf549add4c7278dbPriv8 Security Research Advisory #2004-002 - Versions 0.4.1 and below of LCDproc are vulnerable to multiple bugs that allow for arbitrary code execution.
9192dd2f7bd4bcb2c2ac8a83a3dfe9e4Priv8 Security Research Advisory #2004-001 - All versions of LCDproc are vulnerable to a remotely exploitable buffer overflow that allows attackers to execute arbitrary code. The problem appears in function parse_all_client_messages() of parse.c file where a loop does not check if MAXARGUMENTS were reached, causing the program to crash when lots of arguments are passed to the function.
bf21cc34d95a3fe33ba2bdea6bf9f989