Files ≈ Packet Storm Packet Storm - Information Security News, Files, Tools, Exploits, Advisories and Whitepapers http://packetstormsecurity.org/ en-us Sun, 27 May 2012 22:32:53 GMT Packet Storm 144400 http://packetstormsecurity.org/ http://www.google-analytics.com/__utm.gif?utmwv=1.3&utmn=1195624350&utmcs=ISO-8859-1&utmsr=31337x31337&utmsc=32-bit&utmul=en-us&utmje=0&utmfl=-&utmcn=1&utmdt=Files%u2248%20Packet%20Storm&utmhn=packetstormsecurity.org&utmr=-&utmp=%2F0009-exploits%2Fklogd.exploit.txt%2F&utmac=UA-18885198-1&utmcc=__utma%3D32867617.1195624350.1338157973.1338157973.1338157973.1%3B%2B__utmz%3D32867617.1338157973.1.1.utmccn%3D(direct)%7Cutmcsr%3D(direct)%7Cutmcmd%3D(none) klogd.exploit.txt http://packetstormsecurity.org/files/23173/klogd.exploit.txt http://packetstormsecurity.org/files/23173/klogd.exploit.txt http://packetstormsecurity.org/files/23173/klogd.exploit.txt.html Wed, 27 Sep 2000 21:01:49 GMT Klogd Local Exploit. Envcheck is a Linux/x86 kernel module which strips dangerous environment variables before executing a new program, and which can be used to log these probably threatening events. However, a recent format string handling bug in klogd allows an attacker to overflow its buffer and execute arbitrary code.