Å©·¡Å· ÇÇÇØ

 423, 2/22 ȸ¿ø°¡ÀÔ  ·Î±×ÀΠ 
   midori68
   http://spacelab.khu.ac.kr/~ken
   ÇØÅ·´çÇÑ °Í °°½À´Ï´Ù

http://www.hackerschool.org/HS_Boards/zboard.php?id=QNA_recover&no=46 [º¹»ç]


¾îÁ¦±îÁö¸¸ Çصµ ¾ø´ø Á¤Ã¼ºÒ¸íÀÇ µð·ºÅ丮°¡ Á¦ °èÁ¤ ¾È¿¡ »ý°å½À´Ï´Ù..
µð·ºÅ丮 ¾È¿¡´Â ¿©·¯°³ÀÇ µð·ºÅ丮¿Í ÆÄÀϵéÀÌ µé¾î ÀÖ¾ú´Âµ¥, Á¦°¢°¢ ¼ÒÀ¯±Çµµ ´Ù¸£°í.. µµ¹«Áö ¹«½¼ ¸ñÀûÀ¸·Î ¸¸µç°ÇÁö ¾Ë ¼ö °¡ ¾ø´Â °ÍµéÀÌ´õ±º¿ä
°Ô´Ù°¡ Áö¿öÁöÁöµµ ¾Ê½À´Ï´Ù..

rm ¸í·Â¾î°¡ ¾È ¸Ô¾î¿ä

±×·¡¼­ ÀÏ´ÜÀº ¼­¹ö¿¡¼­ x-window·Î µé¾î°¡¼­ Áö¿ü´Âµ¥, Áö¿ï¶§ º¸´Ï ¸î °¡Áö ¼ö»óÇÑ À̸§ÀÇ ½ÇÇàÆÄÀÏ°ú tar ÆÄÀÏÀÌ ÀÖ´õ±º¿ä

¿ì¼± linuxkit.tar ¶ó´Â °ÍÀÌ ¹¹ÇÏ´Â °ÇÁö ±Ã±ÝÇÕ´Ï´Ù
±×³É Áö¿ö¹ö·È´Âµ¥.. ¾Æ¹«·¡µµ ÀÌ°Ô ÇØÅ·¿¡ »ç¿ëµÈ °Í °°¾Æ¿ä. ¹°·Ð Á¦ °ÍÀº ¾Æ´Õ´Ï´Ù.
¶ÇÇϳª, p.tar ¶ó´Â ¾ÆÄ«À̺êÆÄÀÏÀÌ À־ ÀÌ°Ç È¤½Ã³ª Çؼ­ ´Ù¿î·Îµå ¹Þ¾ÆºÃ´Âµ¥¿ä.
p.c¶ó´Â ¼Ò½ºÆÄÀÏ°ú p¶ó´Â ½ÇÇàÆÄÀÏÀÌ µé¾îÀÖ´õ±º¿ä

p.c¿¡ ÀûÈù ³»¿ëÀº¿ä



/*
* Linux kernel ptrace/kmod local root exploit
*
* This code exploits a race condition in kernel/kmod.c, which creates
* kernel thread in insecure manner. This bug allows to ptrace cloned
* process, allowing to take control over privileged modprobe binary.
*
* Should work under all current 2.2.x and 2.4.x kernels.
*
* I discovered this stupid bug independently on January 25, 2003, that
* is (almost) two month before it was fixed and published by Red Hat
* and others.
*
* Wojciech Purczynski <cliph@isec.pl>
*
* THIS PROGRAM IS FOR EDUCATIONAL PURPOSES *ONLY*
* IT IS PROVIDED "AS IS" AND WITHOUT ANY WARRANTY
*
* (c) 2003 Copyright by iSEC Security Research
*/

#include <grp.h>
#include <stdio.h>
#include <fcntl.h>
#include <errno.h>
#include <paths.h>
#include <string.h>
#include <stdlib.h>
#include <signal.h>
#include <unistd.h>
#include <sys/wait.h>
#include <sys/stat.h>
#include <sys/param.h>
#include <sys/types.h>
#include <sys/ptrace.h>
#include <sys/socket.h>
#include <linux/user.h>

int main(int argc, char ** argv)
{
        prepare();
        signal(SIGALRM, sigalrm);
        alarm(10);
        
        parent = getpid();
        child = fork();
        victim = child + 1;
        
        if (child == -1)
                fatal("[-] Unable to fork");

        if (child == 0)
                do_child();
        else
                do_parent(argv[0]);

        return 0;
}





ÀÌ·± °ÍÀÔ´Ï´Ù.
ÀÌ°Ô ¹¹ÇÏ´Â ¼Ò½ºÀÎÁö Á» ¾Ë·ÁÁÖ¼¼¿ä~~
±×¸®°í ¾Æ¸¶µµ ¹éµµ¾î°¡ ¸¸µé¾îÁ® ÀÖÀ» °Í °°Àºµ¥, ã¾Æ¼­ Áö¿ì´Â ¹æ¹ýµµ Á» ºÎŹµå¸³´Ï´Ù..
¶ÇÇϳª.
rm ¸í·É¾î°¡ ÇØÅ·´çÇÑ µÚ·Î °è¼Ó ¾È µË´Ï´Ù.
$rm *.* ¶ó°í Çϸé
Segmentation fault ¶ó°í ³ª¿À´Âµ¥¿ä...
¾î¶»°Ô ÇØ¾ß ÇÏÁÒ?

  Hit : 4526     Date : 2004/02/13 04:26



    
ÂÁ ÁÖ¼®¿¡ ÀûÈù¹Ù¿Í °°ÀÌ exploitÄÚµå ÀΰͰ°½À´Ï´Ù..;; ÀÏÀÏÈ÷ ã¾ÆÁö¿ì´Â ¹æ¹ý¹Û¿£ ¾øÀ»µí... 2004/02/13
ChuRack ÇØÅ· ´çÇϼ̱º¿ä...p.cÆÄÀÏÀº ¸®´ª½º Ptrace¸¦ ÀÌ¿ëÇÑ ÀͽºÇ÷ÎÀÕÀ¸·Î.. 2004/02/14  
ChuRack root°èÁ¤À» ȹµæÇÒ ¼ö ÀÖ½À´Ï´Ù.¶ÇÇÑ ¹éµµ¾î¶ó´øÁö..rm¿¡ °üÇÑ°ÍÀ» ÀÚ¼¼È÷ »ìÆì º¸Áö ¾Ê´Â ÀÌ»ó ¸ð¸£°Ú±º¿ä... 2004/02/14  
a ÁÖ¼®º¸´Ï±î ÀÌ ÄÚµå´Â ·¹À̽º ÄÁµð¼Ç ÀͽºÇ÷ÎÀÕ ¾î¼±¸ Àú¼±¸ ±×·¯³×¿ä 2004/05/08
a rmÀ» ¼öÁ¤Çؼ­ ¹öÆÛ °ªÀ» ÀÛ°Ô ÇÑ °Í °°±º¿ä.. 2004/05/11
a ¿ì¼±, Á¦ ÃßÃøÀ¸·Î´Â ´Ô°ú ¿ø¼ö¸¦ Áø »ç¶÷ Áß¿¡ ÄÄÇ»Å͸¦ ÀßÇÏ´Â »ç¶÷ÀÌ ¸¶À½¸Ô°í ÇÏ´Â Áþ °°½À´Ï´Ù. ¸®´ª½º¸¦ ¹Ð°í ´Ù½Ã ±ò¾Æº¸¼¼¿ä. È®½ÇÇÏ°Ô ´çÇϼ̳׿ä... 2004/05/11
a ±×¸®°í, ¹Ð±âÀü¿¡ ¸®´ª½ºÀÇ ·Î±×¸¦ È®ÀÎÇؼ­ ÀÌ·± ÁþÀ» ÇÑ »ç¶÷ÀÇ IPÀ» ½ºÅ©·¦Çϼż­ »çÀ̹ö °æÂû¿¡ ³Ñ°Ü¹ö¸®½Ê½Ã¿À. 2004/05/11
403   ÀúÈñ ȸ»ç Å©·¡Å· ´çÇÑ°Í °°Àºµ¥.[1]     jinpw
12/06 4102
402     [re] ÀúÈñ ȸ»ç Å©·¡Å· ´çÇÑ°Í °°Àºµ¥.     indra
12/07 3884
401   Àú±â..[2]     dlwndtka
12/07 3379
400   ÆÄÀÏÀÌ Áö¿öÁöÁö ¾Ê¾Æ¿ä -¤±-[4]     yl
12/08 3599
399   ¿ø°ÝÁ¦¾îÇÁ·Î±×·¥ ¹æÁö¹ý Á» ºÎŹµå¸±²²¿ä..[5]     endmalang
12/09 4425
398   ÇØÅ·´çÇÑ°Ç°¡¿ä??[2]     wonjae190
12/10 4192
397   Àͽº ùȭ¸éÀÌ... beegle.co.kr[2]     hojun
12/19 3660
396   µµ½º°ø°Ý ´çÇÑ°Í °°Àºµ¥..[6]     ´ÙÅ©·¹ÀÎÁ®
12/26 3795
395   P2P°øÀ¯¸¦ ÇÏ´Ù°¡.....[1]     aa11551
12/26 3811
394   À¯µ¿IP¸¦ IP°øÀ¯±â·Î ¾²¸é.....³Ý¹ö½º´Â ¾îÄÉ ½á¾ß Çϳª¿©....[8]     bumno9173
12/27 4501
393   ÀÌ ¾ÆÀÌÇÇ°¡ °è¼Ó Á¢±ÙÁßÀä..[3]     choq
01/07 4026
392   ÇØÅ· °É¸®¸é ¹Ù·Î ±ô»§À̶ó´Âµ¥....[4]     dkfltm0983
01/16 4204
391   Á¦°¡ ÇÁ·ÎÅØÆ®-X¸¦ ¾²°í ÀÖ´Â ÁßÀ̾ú´Âµ¥...[3]     DMS
01/17 3592
390   ´©±º°¡°¡ Á¦ À̸ÞÀÏÀ» ÈÉÃĺ¸´Â°Å °°Àºµ¥....[5]     153com
01/18 4876
389   ÄÄÇ»ÅÍ°¡ °©Àڱ⠴À·ÁÁ³¾î¿ä[5]     greenu
01/26 3980
388   Áú¹®ÀÖ´ÂÁö¸ô°Ú´Âµ¥.. ÀÌ°ÅÁ»ÀоîÁÖ¼¼¿ä..[1]     fafoyoum
01/26 3405
387   ÃÖ±Ù ¸Þ½ÅÀú·Î ½ºÅ©¸°¼¦À̶ó¸ç,,[8]     my007
02/02 3502
  ÇØÅ·´çÇÑ °Í °°½À´Ï´Ù[7]     midori68
02/13 4525
385   ±ÞÇÔ...¸®Çôëȯ¿µ[2]     makayomi
02/13 3394
384   Patch ÆÄÀÏÀ» ½ÇÇà½ÃÄ×À»¶§..[10]     fbekdls
02/27 3651
[1] 2 [3][4][5][6][7][8][9][10]..[22]

Copyright 1999-2024 Zeroboard / skin by Hackerschool.org / Secure Patch by Hackerschool.org