Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 16 Oct 2005 00:47:12 -0400
From:      Kris Kennaway <kris@obsecurity.org>
To:        Stephen Major <smajor@gmail.com>
Cc:        freebsd-security@freebsd.org
Subject:   Re: GID Games Exploits
Message-ID:  <20051016044712.GA27867@xor.obsecurity.org>
In-Reply-To: <4351d9bd.6245f154.4f04.ffffb6ef@mx.gmail.com>
References:  <4351d9bd.6245f154.4f04.ffffb6ef@mx.gmail.com>

next in thread | previous in thread | raw e-mail | index | archive | help

[-- Attachment #1 --]
On Sat, Oct 15, 2005 at 09:39:27PM -0700, Stephen Major wrote:
> It has come to my attention that there are quite a few local exploits
> circling around in the private sector for GID Games.
> 
>  
> 
> Several of the games have vanilla stack overflows in them which can lead to
> elevation of privileges if successfully exploited.

Big deal..that's why they're setgid games (which can only write to
game data files) and not setuid anything important :-)

Kris

[-- Attachment #2 --]
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.2 (FreeBSD)

iD8DBQFDUdtPWry0BWjoQKURAhLOAKC86UoxVK6i2FNrYtAE0f43cJguawCgsNkT
6yv1RwkvOYoo0l3qblPyyBY=
=1dJk
-----END PGP SIGNATURE-----

Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20051016044712.GA27867>