<<< Date Index >>>     <<< Thread Index >>>

Re: OpenVMS fingerd remote stack overflow



On Thu, Aug 07, 2008 at 12:08:53AM +0100, Shaun Colley wrote:
> The MultiNet finger service runs on port 79 by default (like other finger
> servers) and takes a username to query.  A long string (~250+ or so bytes)
> will cause a stack overflow, giving control of a saved return address and
> hence the program counter (PC).

Hahahaha, welcome to 1988!

Alex