BugTraq
Buffer Overflow in ActivePerl ? May 17 2004 08:23PM
Oliver@greyhat.de (Oliver greyhat de) (3 replies)
Re: Buffer Overflow in ActivePerl ? May 18 2004 01:29PM
Nick FitzGerald (nick virus-l demon co uk)
Re: Buffer Overflow in ActivePerl? May 18 2004 09:03AM
Axel Beckert (beckert ecos de)
Hi!

Am Mon, May 17, 2004 at 10:23:56PM +0200, Oliver (at) greyhat (dot) de [email concealed] schrieb:
> i played around with ActiveState's ActivePerl for Win32, and crashed
> Perl.exe with the following command:
>
> perl -e "$a="A" x 256; system($a)"
>
> I wonder if this bug isnt known?!? Because system() is a very common
> command....
> Can anybody reproduce this?

I can confirm this for Perl v5.8.0 built for MSWin32-x86-multi-thread
(Binary build 805 provided by ActiveState Corp.) on W2K.

My first thought was that the nested double-quotes maybe the reason,
but even

perl -e "$a='A' x 256; system($a)"

crashes.

perl -e "system('A'x256)"

chrashes also btw.

Kind regards, Axel Beckert
--
-------------------------------------------------------------
Axel Beckert ecos electronic communication services gmbh
it security solutions * web applications with apache and perl

Mail: Tulpenstrasse 5 D-55276 Dienheim near Mainz
E-Mail: beckert (at) ecos (dot) de [email concealed] Voice: +49 6133 939-220
WWW: http://www.ecos.de/ Fax: +49 6133 939-333
-------------------------------------------------------------

[ reply ]
Re: Buffer Overflow in ActivePerl ? May 18 2004 12:58AM
rich sf lclogic com (2 replies)
Re: Buffer Overflow in ActivePerl ? May 18 2004 08:37PM
Josh Tolley (josh raintreeinc com)
RE: [Full-Disclosure] Re: Buffer Overflow in ActivePerl ? May 18 2004 11:22AM
Bill Royds (full-disclosure royds net)


 

Privacy Statement
Copyright 2010, SecurityFocus