Newsgroups: comp.os.vms
From: patrick jankowiak <e...@swbell.net>
Date: Tue, 12 Aug 2008 19:44:55 -0500
Local: Tues, Aug 12 2008 8:44 pm
Subject: Re: DEFCON 16 and Hacking OpenVMS
samp...@gmail.com wrote: I would have thought a CLI overflow to have been tried by at least a few >>> 1. A format string vulnerability in the FINGER client (VAX only). The >>> example shellcode is stored on a remote system's .plan file and forces >>> the victim FINGER client to modify SYSUAF. >> Is this with DEC TCPIP services or is it something to do with the >> Multinet finger vulnerability ? > It appears to be something separate, since it seems to have to do with >>> 2. A CLI buffer overflow on Alphas. Basically any input over 511 > I think this might be a DCL issue, it seems to work across a number of > Sampsa at DEFCON9 because the system automagically created service-rich user accounts with of course DCL which the hackers were then free to abuse. We were not scrutinizing buffers however and any such overflow may in Patrick J You must Sign in before you can post messages.
To post a message you must first join this group.
Please update your nickname on the subscription settings page before posting.
You do not have the permission required to post.
| ||||||||||||||