LinuxQuestions.org
Download your favorite Linux distribution at LQ ISO.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Distributions > Slackware
User Name
Password
Slackware This Forum is for the discussion of Slackware Linux.

Notices


Reply
  Search this Thread
Old 09-12-2015, 01:30 PM   #1
Altiris
Member
 
Registered: Mar 2013
Posts: 556

Rep: Reputation: Disabled
Having some fun - trying to reproduce a vulnerability


I am bored and wanted to play around with things, I noticed there was some vulnerability in screen 4.0.3-14 via https://bugs.debian.org/cgi-bin/bugr...cgi?bug=797624 and Slackware 14.1 uses 4.0.3 so I wanted to see if it were vulnerable so I went to the bug report here https://savannah.gnu.org/bugs/?45713 and tried reproducing which someone says to put "printf '\x1b[10000000T'" without "" in a screen session. I did that but it doesn't seem to do anything, screen -list will report that it is dead. Is this part of the vulnerability? How exactly do I check if this is reproducible?
 
Old 09-12-2015, 02:33 PM   #2
volkerdi
Slackware Maintainer
 
Registered: Dec 2002
Location: Minnesota
Distribution: Slackware! :-)
Posts: 2,504

Rep: Reputation: 8461Reputation: 8461Reputation: 8461Reputation: 8461Reputation: 8461Reputation: 8461Reputation: 8461Reputation: 8461Reputation: 8461Reputation: 8461Reputation: 8461
It seems like a real stretch to call this screen bug a "vulnerability." But I guess that's par for the course these days.
 
Old 09-12-2015, 11:04 PM   #3
Altiris
Member
 
Registered: Mar 2013
Posts: 556

Original Poster
Rep: Reputation: Disabled
Quote:
Originally Posted by volkerdi View Post
It seems like a real stretch to call this screen bug a "vulnerability." But I guess that's par for the course these days.
I don't know, I am not an expert on this stuff, that is what Debian marked it as such https://www.debian.org/security/2015/dsa-3352 I was just looking at things and was bored so I tried reproducing it.
 
Old 09-13-2015, 03:48 AM   #4
unSpawn
Moderator
 
Registered: May 2001
Posts: 29,415
Blog Entries: 55

Rep: Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600
CVE-2015-6806 discussion
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
vulnerability scanning using NMAP on CVE-2014-0322 vulnerability,check vulnerable meeiyoke Linux - Security 2 06-06-2014 05:09 PM
vulnerability scanning using NMAP on CVE-2014-0322 vulnerability,check vulnerable . meeiyoke Linux - Newbie 1 06-06-2014 12:14 PM
Help me to reproduce an attack yzT! Linux - Security 3 02-20-2014 10:19 AM
Can you reproduce this? LQtoto Linux - Security 1 05-08-2004 04:41 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Distributions > Slackware

All times are GMT -5. The time now is 05:39 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration