Member of The Internet Defense League Últimos cambios
Últimos Cambios
Blog personal: El hilo del laberinto Geocaching

Silly bug in SNOOP

Última Actualización: 17 de Agosto de 1.998 - Lunes

BCC: anita@argo.es,
     Lista de Proveedores Internet <proveedores@listserv.rediris.es>,
     Lista proveedores QMD <proveedores_qmd@syntax-error.org>,
     "Grupo de Desarrollo Informático" <gdi@uvigo.es>,
     teleco-vigo@argo.es, hacking@argo.es
Message-ID: <35D83581.20270144@argo.es>
Date: Mon, 17 Aug 1998 13:52:01 +0000
From: "Jesús Cea Avión" <jcea@argo.es>
Organization: Argo Redes y Servicios Telematicos, S.A.
Newsgroups: comp.sys.sun.admin,comp.sys.sun.misc
To: Casper Dik 
Subject: Silly bug in SNOOP

Bug just reported to local SunSolve Service in Spain

http://sunsolve.sun.com/sunsolve/wwscenter.html#spain


# uname -a
SunOS corinto 5.5.1 Generic_103640-20 sun4u sparc SUNW,Ultra-1

# type snoop
snoop is hashed (/usr/sbin/snoop)

# ls -l /usr/sbin/snoop
-r-xr-xr-x 1 bin bin 204164 Aug 13 18:02 /usr/sbin/snoop
(date is from last patching)

# ./a.out /usr/sbin/snoop
MD5: 66609737ff6444728c3eac8268a0599a
SHA-1: 51647189daf63068e38498acad68d6da8b3b43f9
(a.out is a hash program)

All recomended patches installed.

The problem:

  • Type "snoop -ta -x0"

  • If you receive any packet with:

    • An odd lenght

    • Last byte >127

    then the hexadecimal dump will show the last byte as a 32-bit sign extended value. That is:

    real last byte  value showed
    000
    ......
    7e7e
    7f7f
    80ffffff80
    81ffffff81
    ......
    fefffffffe
    ffffffffff

I discovered the bug last week, trying to feed the snoop output into a home-made script.

-- 
Jesus Cea Avion                         _/_/      _/_/_/        _/_/_/
jcea@argo.es http://www.argo.es/~jcea/ _/_/    _/_/  _/_/    _/_/  _/_/
                                      _/_/    _/_/          _/_/_/_/_/
PGP Key Available at KeyServ   _/_/  _/_/    _/_/          _/_/  _/_/
"Things are not so easy"      _/_/  _/_/    _/_/  _/_/    _/_/  _/_/
"My name is Dump, Core Dump"   _/_/_/        _/_/_/      _/_/  _/_/
"El amor es poner tu felicidad en la felicidad de otro" - Leibnitz



Python Zope ©1998 jcea@jcea.es

Más información sobre los OpenBadges

Donación BitCoin: 19niBN42ac2pqDQFx6GJZxry2JQSFvwAfS