½Ã½ºÅÛ ÇØÅ·

 1574, 6/79 ȸ¿ø°¡ÀÔ  ·Î±×ÀΠ 
   ewqqw
   ¹öÆÛ ¿À¹öÇÃ·Î¿ì °ü·Ã

http://www.hackerschool.org/HS_Boards/zboard.php?id=QNA_system&no=1865 [º¹»ç]


Starting program: /home/realbof/realbof `python -c 'print "A"*100 + "\x7f\xfd\xff\xbf"'`

Breakpoint 1, 0x0804846e in main ()
(gdb) x/100wx $esp
0xbffff4d0:        0xbffff4ec        0xbffff753        0x02c0003f        0x00000000
0xbffff4e0:        0xbffff594        0xbffff508        0xbffff500        0x41414141
0xbffff4f0:        0x41414141        0x41414141        0x41414141        0x41414141
0xbffff500:        0x41414141        0x41414141        0x41414141        0x41414141
0xbffff510:        0x41414141        0x41414141        0x41414141        0x41414141
0xbffff520:        0x41414141        0x41414141        0x41414141        0x41414141
0xbffff530:        0x41414141        0x41414141        0x41414141        0x41414141
0xbffff540:        0x41414141        0x41414141        0x41414141        0x41414141
0xbffff550:        0xbffffd7f        0x00000000        0x00000000        0xb7e2fa83
0xbffff560:        0x00000002        0xbffff5f4        0xbffff600        0xb7feccea
0xbffff570:        0x00000002        0xbffff5f4        0xbffff594        0x0804a018
0xbffff580:        0x0804822c        0xb7fc1000        0x00000000        0x00000000
0xbffff590:        0x00000000        0x1256c241        0x28488651        0x00000000
0xbffff5a0:        0x00000000        0x00000000        0x00000002        0x08048350
0xbffff5b0:        0x00000000        0xb7ff2500        0xb7e2f999        0xb7fff000
0xbffff5c0:        0x00000002        0x08048350        0x00000000        0x08048371
0xbffff5d0:        0x0804844d        0x00000002        0xbffff5f4        0x08048490
0xbffff5e0:        0x08048500        0xb7fed180        0xbffff5ec        0x0000001c
0xbffff5f0:        0x00000002        0xbffff73d        0xbffff753        0x00000000
0xbffff600:        0xbffff7bc        0xbffff7cd        0xbffff7dd        0xbffff7e8
0xbffff610:        0xbffff80b        0xbffff81f        0xbffff832        0xbffff83f
0xbffff620:        0xbffffd60        0xbffffd6c        0xbffffe13        0xbffffe27
0xbffff630:        0xbffffe85        0xbffffe9c        0xbffffeab        0xbffffecc
0xbffff640:        0xbffffede        0xbffffeef        0xbffffef8        0xbfffff0b
0xbffff650:        0xbfffff13        0xbfffff28        0xbfffff38        0xbfffff6e

¿©±â¿¡¼­... retÁÖ¼Ò¸¦ ¾î¶»°Ô ã¾Æ³»³ª¿ä?? 100byte Â¥¸® º¯¼öÀÔ´Ï´Ù¸¸...
ȯ°æº¯¼ö¿¡ ½©ÄÚµå Áý¾î³Ö°í ret¿¡ µÚÁý¿¡ ¾º¿ï·Á°í Çϴµ¥ ¹¹°¡ sfp°í ¹¹°¡ retÀÎÁö ¸ô¶ó¼­ ÇÑÂü Çì¸Å°í Àֳ׿ä... Á¶¾ðºÎŹµå¸³´Ï´Ù...

  Hit : 2137     Date : 2017/04/20 02:44



    
ÇØÄð·¯ 0xbffff540: 0x41414141 0x41414141 0x41414141 0x41414141
0xbffff550: 0xbffffd7f 0x00000000 0x00000000 0xb7e2fa83
¿©±â¼­ 0xb7e2fa83 ÀÌ°Ô ret°°½À´Ï´Ù
mainÇÔ¼öÀÇ ¸®ÅϾîµå·¹½º´Â ¶óÀ̺귯¸® ÁÖ¼ÒÀÔ´Ï´Ù(__libc_start_main)
±×·¡¼­ x/i ±× ÁÖ¼Ò ÇßÀ» ¶§ __libc_start_main+~~~ °¡ ³ª¿Í¾ß ÇÏ°í º¸ÅëÀº 200ÀÌ»óÀÔ´Ï´Ù
±×¸®°í ±× ÁÖ¼Ò - 5, -4, -3, -2, -1 À» ´Ù x/iÇغÃÀ»¶§ call ÀνºÆ®·°¼ÇÀÌ ³ª¿À¸é ±×°Ô mainÇÔ¼ö°¡ È£ÃâµÇ´Â ºÎºÐÀÔ´Ï´Ù
2017/04/20  
ewqqw ÇØ°áµÇ¾ú½À´Ï´Ù~~ 2017/04/21  
1474   uaf Ãë¾àÁ¡ ,¸Þ¸ð¸® ¸¯ °ü·Ã ¹®Á¦[2]     pkdo1030
07/15 2423
1473   r0pbabay ¸¦ Ǫ´Âµ¥....[1]     ewqqw
07/07 1935
1472   ½Ã½ºÅÛ ÇØÅ·°­Á 21°­ºÎÅÍ ÀÚ·á ºÎŹµå·Áµµ µÉ±î¿ä?     sexissports
06/23 2399
1471   c¾ð¾î ÇÔ¼ö Á¤ÀÇÁß¿¡...     vngkv123
06/20 2107
1470   checksec, ELF±â´É, ±×¿Ü Áú¹®....     vngkv123
06/14 2239
1469   pwnable°ú ½ÇÀü ½Ã½ºÅÛ ÇØÅ·ÀÇ Â÷ÀÌ[2]     choboKing
06/11 4366
1468   ret2kernel32? (À©µµ¿ì ret2libc)[3]     choboKing
06/11 2136
1467   ulimit -f °ü·ÃÇÏ¿© Áú¹®µå·Áº¾´Ï´ç     vngkv123
06/01 2062
1466   ½©Äڵ带 ÀÌ¿ëÇؼ­ bof ¸¦ ÇÒ¶§[4]     tkakr7458
05/22 2555
1465   unlink¸ÅÅ©·Î¿¡¼­ P....[5]     vngkv123
05/12 2228
1464   heap¿¡¼­ unsafe unlink°¡ Á¶±Ý ÀÌÇØ°¡ ¾ÈµÇ³×¿ë ¤Ð[6]     vngkv123
05/10 3955
1463   heap¿¡¼­ bin°ü·Ã[3]     vngkv123
04/30 2384
1462   codegate nuclear¹®Á¦ Áß libc leakÁú¹®..[3]     vngkv123
04/27 3046
1461   fgetsÇÔ¼ö¸¦ ÀÌ¿ëÇÑ ¹öÆÛ¿À¹öÇ÷ο젠   ewqqw
04/23 3792
1460   format string ¹öÆÛ¿À¹öÇ÷ο젠   ewqqw
04/22 2065
1459   angry_doraemon°°Àº ¹®Á¦ ·ÎÄõî·Ï..     vngkv123
04/22 2449
1458   ¹öÆÛ¿À¹öÇÃ·Î¿ì °ü·Ã[1]     ewqqw
04/21 2195
  ¹öÆÛ ¿À¹öÇÃ·Î¿ì °ü·Ã[2]     ewqqw
04/20 2136
1456   format string bug + got overwite[3]     tkakr7458
04/19 2378
1455   python z3....[2]     vngkv123
04/19 3030
[1][2][3][4][5] 6 [7][8][9][10]..[79]

Copyright 1999-2024 Zeroboard / skin by Hackerschool.org / Secure Patch by Hackerschool.org