20040102 xsok local games exploitmailing list
http://marc.info/?l=bugtraq&m=107307407027259&w=2 CVE-2004-0074
XSOK 1.02 - '-xsokdir' Local Buffer Overflow Game
Record summary
CVE-2004-0074 has a selected CVSS score of 4.6; EIP currently links 2 catalogued exploits.
Description
Multiple buffer overflows in xsok 1.02 allows local users to gain privileges via (1) a long LANG environment variable, or (2) a long -xsokdir command line argument, a different vulnerability than CVE-2003-0949.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 2
Proofs of concept
2Catalogued exploits
ExploitDBXSOK 1.02 - '-xsokdir' Local Buffer Overflow GameExploitDB exploitby c0wboyNot analyzed1 file
ExploitDBXSOK 1.0 2 - 'LANG Environment' Local Buffer OverrunExploitDB exploitby N2n-HackerNot analyzed1 file
References
720040103 xsok local games exploit (2)mailing list
http://marc.info/?l=bugtraq&m=107332542918529&w=2 9341vdb entry
http://www.securityfocus.com/bid/9341 9352vdb entry
http://www.securityfocus.com/bid/9352 xsok-long-xsokdir-bo(14906)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/14906 xsok-lang-bo(14910)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/14910 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2004-0074