Google Groups no longer supports new Usenet posts or subscriptions. Historical content remains viewable.
Dismiss

[9fans] Plan9 buffer overflow exploit explained in Phrack Volume 0x0b, Issue 0x3e, Phile #0x09 of 0x0f

63 views
Skip to first unread message

Vester Thacker

unread,
Sep 20, 2003, 3:19:33 AM9/20/03
to
Just in case some folks haven't read about it, an article was written
about a Plan9 exploit. The article can be found at
http://phrack.unixchicks.com/p62-0x09.txt

I found it disheartening, but interesting nonetheless. Comments?

-- Vester Thacker

Charles Forsyth

unread,
Sep 20, 2003, 3:59:33 AM9/20/03
to
>>I found it disheartening, but interesting nonetheless.

as far as i could tell:
- the only `buffer overflow' exploited was one in his own program
- the technique used will work on any conventional architecture that implements C;
- all he did was work out the details of Plan 9 system call conventions, rather painfully
(he could just look at the mkfile)
- he's learnt enough acid to peep at code but claims he can't find the editor
- he seems to think that factotum remembering a password he's had to give it is equivalent
to opening the door to everyone
- the author seems aggressively ignorant (fairly typical of failing students in my experience)
i'd say he's actually just trying to show off to his phellow phile-istines.

i thought it was splendid: it's written in a breathless, manic style that rushes so quickly
from each misconception to the next.

Atanas Bachvaroff

unread,
Sep 20, 2003, 6:43:29 AM9/20/03
to

Blah! I've just read that crap at the url given. What I see is
misconception and ignorance plus very, very, very nice "conclusions"...
Just as expected, a kid from the crackbrained generation who read their
grandiose-hack-the-world things but no further... Several more things
come to my mind but these have no place in this mailing list.
Greetings

--
BEATVSHOMOQVIINVENITSAPIENTIAMETQVIAFFLVITPRVDENTIALIVRILVCIFERIVS

Dan Cross

unread,
Sep 20, 2003, 1:18:38 PM9/20/03
to
I think phrack sites should attach slashdot-style discussion software to
articles. After wading through endless messages that say nothing more
than ``woot! First! lol'', Charles could post his last comment, which
gave me quite a chuckle.

- Dan C.

Markus Friedl

unread,
Sep 22, 2003, 5:03:35 AM9/22/03
to

but it's a hoax and it makes fun of phrack articles.

C H Forsyth

unread,
Sep 22, 2003, 8:31:38 AM9/22/03
to
i don't know how i'd ever be able to tell the difference!
0 new messages