First Last Prev Next    No search results available      Search page      Enter new bug
Bug#: 22261
Alias:
Product:
Component:
Status: RESOLVED
Resolution: FIXED
Assigned To: Gentoo Security <security@gentoo.org>
Hardware:
OS:
Version:
Priority:
Severity:
Reporter: Daniel Ahlberg (RETIRED) <aliz@gentoo.org>
Add CC:
CC:
URL:
Summary:
Status Whiteboard:
Keywords:

Filename Description Type Creator Created Size Actions
Create a New Attachment (proposed patch, testcase, etc.) View All

Bug 22261 depends on: Show dependency tree
Bug 22261 blocks:
Votes: 0    Show votes for this bug    Vote for this bug

Additional Comments: (this is where you put emerge --info)


Not eligible to see or edit group visibility for this bug.






View Bug Activity   |   Format For Printing   |   XML   |   Clone This Bug


Description:   Opened: 2003-06-05 03:45 0000
possible remote buffer overflow in atftpd 
 
From:  
"Rick" <rikul@interbee.com> 
 
 
To:  
<bugtraq@securityfocus.com> 
 
 
Date:  
Yesterday 23.11.50 
 
 
Hello, 
 
There is possible remote buffer overflow in atftpd. It has to do with length 
of filename which client sends to atftpd server. If you send filename over 
~253 bytes, it crashes with segfault. When I attach to process with gdb I 
can see it trying to run instruction from EIP 0x41414141. That cant be a 
good thing. I've tested this on debian woody. I've creating proof of concept 
exploit for it but having few troubles :) 
 
later, 
Rick Patel

------- Comment #1 From Daniel Ahlberg (RETIRED) 2003-06-08 14:29:05 0000 -------
glsa sent 

First Last Prev Next    No search results available      Search page      Enter new bug