vendor:
Tru64 UNIX V5.0 (Rev. 910) (TruNastyWhore.localdomain)
by:
milw0rm.com
9,3
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: Tru64 UNIX V5.0 (Rev. 910) (TruNastyWhore.localdomain)
Affected Version From: Compaq Tru64 UNIX V5.0 (Rev. 910) (TruNastyWhore.localdomain)
Affected Version To: Compaq Tru64 UNIX V5.0 (Rev. 910) (TruNastyWhore.localdomain)
Patch Exists: YES
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2006
Compaq Tru64 UNIX V5.0 (Rev. 910) (TruNastyWhore.localdomain) Remote Exploit
This exploit is based on work by stripey from back in the day. It is a remote exploit for Compaq Tru64 UNIX V5.0 (Rev. 910) (TruNastyWhore.localdomain). It uses a buffer overflow vulnerability to execute a shellcode of length 1024 bytes. The exploit sets the environment variable NLSPATH to the shellcode and then executes the edauth command with a heapgrow of length 30000 bytes.
Mitigation:
Upgrade to the latest version of Compaq Tru64 UNIX V5.0 (Rev. 910) (TruNastyWhore.localdomain)