fa.openbsd.www
[Top] [All Lists]

Re: Found something

Subject: Re: Found something
From: Bob Beck <beck@xxxxxxxxxxx>
Date: Thu, 10 Jul 2008 18:21:18 UTC
Newsgroups: fa.openbsd.www

* Velvet Warrior <rhjiid@xxxxxxxxxxxxxx> [2008-07-10 11:43]:
> Hi,
> 
> I found something by surfing around and I don't know what I should think
> about it because I'm not able to analyse it.
> I've got no source experiences but I think you should see it too.
> 
> 
> http://governmentsecurity.org/forum/?showtopic=29397
> 

all he did was obfuscate this:
http://www.milw0rm.com/exploits/3094

Which is an old localhost hole from 4.0, long since fixed:

007: SECURITY FIX: January 3, 2007   i386 only
Insufficient validation in vga(4) may allow an attacker to gain root privileges 
if the kernel is compiled with option PCIAGP and the actual device is not an 
AGP device. The PCIAGP option is present by default on i386 kernels only.
A source code patch exists which remedies this problem.

Just juvenile horseshit, unless you're interested in how to 
obfuscate C code to bypass retarded IDS systems.

        -Bob


<Prev in Thread] Current Thread [Next in Thread>
  • Found something, Velvet Warrior
    • Message not available
      • Re: Found something, Bob Beck <=