From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: X-Spam-Checker-Version: SpamAssassin 3.2.5 (2008-06-10) on sa.int.altlinux.org X-Spam-Level: X-Spam-Status: No, score=-2.6 required=5.0 tests=BAYES_00 autolearn=ham version=3.2.5 Date: Wed, 3 Jun 2009 17:12:28 +0400 From: Afanasov Dmitry To: devel@lists.altlinux.org Message-ID: <20090603131228.GD1869@ender.fondinvestrk.ru> Mail-Followup-To: devel@lists.altlinux.org References: <200906030521.04774.lav@altlinux.ru> <200906031505.27940.ledest@gmail.com> <20090603121127.GC1869@ender.fondinvestrk.ru> <200906031519.43673.ledest@gmail.com> MIME-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-sha1; protocol="application/pgp-signature"; boundary="WChQLJJJfbwij+9x" Content-Disposition: inline In-Reply-To: <200906031519.43673.ledest@gmail.com> User-Agent: Mutt/1.5.19 (2009-01-05) Subject: Re: [devel] =?koi8-r?b?5M/CwdfMxc7JxSAtV2Vycm9yPWZvcm1hdC1zZWN1cml0?= =?koi8-r?b?eQ==?= X-BeenThere: devel@lists.altlinux.org X-Mailman-Version: 2.1.12 Precedence: list Reply-To: ALT Linux Team development discussions List-Id: ALT Linux Team development discussions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 03 Jun 2009 13:12:45 -0000 Archived-At: List-Archive: List-Post: --WChQLJJJfbwij+9x Content-Type: text/plain; charset=koi8-r Content-Disposition: inline Content-Transfer-Encoding: quoted-printable On Wed, Jun 03, 2009 at 03:19:43PM +0300, Led wrote: > On Wednesday 03 June 2009 15:11:28 Afanasov Dmitry wrote: > > On Wed, Jun 03, 2009 at 03:05:27PM +0300, Led wrote: > > > > printf(msg) --> printf("%s", msg) > > > > > > =E9=ED=E8=EF =DC=D4=CF =CB=CF=D3=D4=D9=CC=D8 > > > > =CE=C5 =D3=CF=D7=D3=C5=CD :) > > http://doc.bughunter.net/format-string/exploit-fs.html > > > =EB=CF=D3=D4=D9=CC=D8 - =C9=D3=D0=CF=CC=D8=DA=CF=D7=C1=D4=D8 =C6=D5=CE=CB= =C3=C9=C0 =C4=CC=D1 =C6=CF=D2=CD=C1=D4=C9=D2=CF=D7=C1=CE=C9=D1, =C5=D3=CC= =C9 =CE=C9=DE=C5=C7=CF =C6=CF=D2=CD=C1=D4=C9=D2=CF=D7=C1=D4=D8=20 > =CE=C5 =CE=D5=D6=CE=CF. =DC=DC, =D4=CF =C5=D3=D4=D8 printf("%s", msg) =CB=CF=D3=D4=D9=CC=D8 =D0=CF = =D3=D2=C1=D7=CE=C5=CE=C9=C0 =D3 puts? =DA=CE=C1=DE=C9=D4 =D1 =CE=C5 =D4=C1= =CB =D0=CF=CE=D1=CC, =D3=CF=D2=D2=C9 :) =C8=CF=D4=D1, =CB=C1=CB =D7=D9=D1=D3=CE=C9=CC=CF=D3=D8, =CB=CF=CD=D0=C9=CC= =D1=D4=CF=D2 =D7=D0=CF=CC=CE=C5 =CF=D0=D4=C9=CD=C9=DA=C9=D2=D5=C5=D4. =C1 = =C5=D3=CC=C9 =CF=D0=D4=C9=CD=C9=DA=C9=D2=CF=D7=C1=D4=D8 =D3=C1=CD=CF=CD=D5, =D4=CF =C2= =D9=D3=D4=D2=C5=C5 fwrite, =C9 =D4=C5=CD =C2=CF=CC=C5=C5 write, =CE=D5 =C1 = =D3 sysctl =D7=CF=CF=C2=DD=C5 =CE=C9=CB=D4=CF =CE=C5 =D3=D2=C1=D7=CE=C9=D4=D3=D1 :) =D7 =CF=C2=DD=C5=CD - =CE=C5 =D5=D7=C5=D2=C5=CE =DE=D4=CF =CE=C1 =C4=C1=CE= =CE=CF=CD =D5=D2=CF=D7=CE=C5 =C1=C2=D3=D4=D2=C1=CB=C3=C9=C9 =DC=D4=CF =CB= =CF=D3=D4=D9=CC=D8. =C8=CF=D4=D1 =C4=D5=DB=C1 =CE=C5 =CC=C5=D6=C9=D4 =C9=D3=D0=CF=CC=D8=DA=CF=D7=C1=D4=D8 ("%s", msg). --=20 =F3 =D5=D7=C1=D6=C5=CE=C9=C5=CD =E1=C6=C1=CE=C1=D3=CF=D7 =E4=CD=C9=D4=D2=C9=CA --WChQLJJJfbwij+9x Content-Type: application/pgp-signature; name="signature.asc" Content-Description: Digital signature Content-Disposition: inline -----BEGIN PGP SIGNATURE----- Version: GnuPG v2.0.11 (GNU/Linux) iEYEARECAAYFAkomdrwACgkQ72GKvac0IyyQ8ACfUzAebvlC+kLUX42DfBmqAXlm EEEAn396ReW03rcOQ/ke/mQk6fNFhiIx =te/u -----END PGP SIGNATURE----- --WChQLJJJfbwij+9x--