Flag: Tornado! Hurricane!

 Forums >>  Brainstorms - General  >>  Is it a vulnerability or not ?

Topic created on: June 13, 2010 13:28 CDT by voila .

hello there ..

I m research on ftp server using ftp fuzzer . I found that it throughs an exception(ACCESS_VOILATION) , on instruction
mov [esi],di .. here esi=0x3030000 .. so it is unable to write value of dl at this memory address ..

My question is .. how can i come to know that .. value in register "esi" is affected by my fuzzers data .. Becuase if it is affected by my fuzzer data .. then i can write value at dl at an arbitary memory address , then definitly it is vulnerability . :) ...

I hope you understand my question .. i m new here so plz be soft if u ask sometihng very basic :)

Thanks in advance :)

  cod     June 14, 2010 23:26.05 CDT
start your ftp server using a debugger.. when the cpu thrown access violation exception you'll need to check call stack, stack params and heap to find current ftp command.. after using IDA (or other software) you can perform a static analisys on binary code to understand the behavior of software..

  voila     June 15, 2010 05:08.58 CDT
> cod: start your ftp server using a debugger.. when the cpu thrown access violation exception you\'ll need to check call stack, stack params and heap to find current ftp command.. after using IDA (or other software) you can perform a static analisys on binary code to understand the behavior of software..


Thanks cod :)

  jduck     June 15, 2010 10:32.43 CDT
looks promising, like a probably memory corruption.. 0x30300000 is 00\0\0

Note: Registration is required to post to the forums.

There are 28,224 total registered users.


Recently Created Topics
Reverse Engineering ...
Jan/23
Career: DoD Agency I...
Jan/22
"Disappearing&q...
Jan/17
Career: Software Sec...
Jan/11
Where is the call st...
Jan/07
IDA Pro 6.1 Breakpoi...
Jan/01
How to create data s...
Dec/30
can i search all mod...
Dec/23
IDA symbol table exp...
Dec/20
An anti-attach trick
Dec/17


Recent Forum Posts
Reverse Engineering ...
NirIzr
"Disappearing&q...
NirIzr
Reverse Engineering ...
charlie
"Disappearing&q...
charlie
An anti-attach trick
Bass
An anti-attach trick
waleeda...
An anti-attach trick
Bass
An anti-attach trick
waleeda...
An anti-attach trick
Bass
Looking for value in...
NirIzr


Recent Blog Entries
cmathieu
Feb/07
Hacker Carnival

waleedassar
Feb/06
OllyDbg v1.10 And Hardware ...

waleedassar
Jan/31
Yet Another Anti-Debug Trick

RolfRolles
Jan/22
Finding Bugs in VMs with a ...

waleedassar
Jan/13
An OllyDbg Bug Disables Sof...

More ...


Recent Blog Comments
waleedassar on:
Feb/07
OllyDbg v1.10 And Hardware ...

NirIzr on:
Feb/07
OllyDbg v1.10 And Hardware ...

NirIzr on:
Feb/05
Yet Another Anti-Debug Trick

trolotou on:
Feb/05
Doudoune Moncler -Pennies F...

waleedassar on:
Feb/01
Yet Another Anti-Debug Trick

More ...


Imagery
SoySauce Blueprint
Jun 6, 2008

[+] expand

View Gallery (11) / Submit