LinKern x64 - SLUB off-by-one

115 Punkte  

Exploit an off-by-one on this vulnerable module

Autor

Tosh,  

Stufe  Schwierigkeitsgrad

Validierung

14 Herausforderer 1%

Bewertung  Bewertung

5 votes
Bitte loggen Sie sich ein um auf diese Seite zugreifen zu können

Musterlösung  Musterlösung

Ergebnisse der Übungen Ergebnisse der Übungen

Nickname Übungen Sprache date
javierprtd   LinKern x64 - SLUB off-by-one es 24. Juni 2019 zu  17:50
Tosh   LinKern x64 - SLUB off-by-one fr 7. Juni 2019 zu  16:56
XeR   LinKern x64 - SLUB off-by-one fr 4. Juni 2019 zu  20:20
Alkanor   LinKern x64 - SLUB off-by-one fr 1. Juni 2019 zu  22:42
Geluchat   LinKern x64 - SLUB off-by-one fr 28. Mai 2019 zu  20:40
john.doe   LinKern x64 - SLUB off-by-one en 26. Mai 2019 zu  16:57
Kileak   LinKern x64 - SLUB off-by-one en 25. Mai 2019 zu  23:06
hama   LinKern x64 - SLUB off-by-one en 22. Mai 2019 zu  10:36
christrc   LinKern x64 - SLUB off-by-one fr 21. Mai 2019 zu  18:23
pickle   LinKern x64 - SLUB off-by-one en 19. Mai 2019 zu  04:56

In dieser Rubrik veröffentlichte Übungen 69 Übungen

Ergebnis Name der Übung Validierung Anzahl der Punkte  Erklärung der Punktevergabe Schwierigkeitsgrad  Schwierigkeitsgrad Autor Bewertung  Bewertung Musterlösung
pas_valide ELF x86 - Stack buffer overflow basic 1 8% 11153 5 Lyes 2
pas_valide ELF x86 - Stack buffer overflow basic 2 6% 8300 10 Lyes 1
pas_valide ELF x86 - Format string bug basic 1 4% 5523 15 Lu33Y 0
pas_valide ELF x64 - Stack buffer overflow - basic 3% 4023 20 Arod 0
pas_valide ELF x86 - Format string bug basic 2 2% 2704 20 Lyes 0
pas_valide ELF x86 - Race condition 3% 3717 20 Lu33Y 0
pas_valide ELF ARM - Stack buffer overflow - basic 1% 650 25 pickle 1
pas_valide ELF MIPS - Stack buffer overflow - No NX 1% 156 25 franb 0
pas_valide ELF x86 - Stack buffer overflow basic 3 2% 2676 25 Lyes 0
pas_valide ELF x86 - Use After Free - basic 1% 206 25 Esad 0
pas_valide ELF ARM - Stack Spraying 1% 129 30 pickle 0
pas_valide ELF x86 - BSS buffer overflow 3% 2917 30 Lu33Y 1
pas_valide ELF x86 - Stack buffer overflow basic 4 2% 1937 30 Lu33Y 0
pas_valide ELF x86 - Stack buffer overflow basic 6 2% 1559 30 TiWim 1
pas_valide ELF x86 - Format String Bug Basic 3 1% 739 35 Lyes 0
pas_valide ELF ARM - Basic ROP 1% 306 40 pickle 0
pas_valide ELF MIPS - Basic ROP 1% 51 40 dagger 0
pas_valide ELF x86 - Stack buffer overflow - C++ vtables 1% 521 40 sebbb 0
pas_valide ELF x64 - Logic bug 1% 105 50 sbrk 0
pas_valide ELF x86 - Bug Hunting - Several issues 1% 50 50 sbrk 0
pas_valide ELF x86 - Stack buffer and integer overflow 2% 1430 50 Lu33Y 0
pas_valide ELF x86 - Stack buffer overflow - ret2dl_resolve 1% 65 50 kikko 0
pas_valide ELF x86 - Stack buffer overflow basic 5 1% 1312 50 Lu33Y 0
pas_valide ELF x64 - Stack buffer overflow - advanced 1% 726 55 Arod 0
pas_valide ELF MIPS - Format String Glitch 1% 21 60 pickle, martin 0
pas_valide ELF x86 - Information leakage with Stack Smashing Protector 1% 549 60 Arod 0
pas_valide ELF ARM - Race condition 1% 72 70 pickle 0
pas_valide ELF x64 - Browser exploit - Intro 1% 31 70 pickle 0
pas_valide ELF x86 - Out of bounds attack - French Paradox 1% 63 70 sbrk 0
pas_valide ELF x86 - Remote BSS buffer overflow 1% 619 75 Tosh 0
pas_valide ELF x86 - Remote Format String bug 1% 764 75 Tosh 0
pas_valide ELF x64 - Remote heap buffer overflow - fastbin 1% 167 80 franb 0
pas_valide ELF x86 - Blind remote format string bug 1% 201 80 Lyes 0
pas_valide LinKern ARM - vulnerable syscall 1% 66 85 pickle 0
pas_valide LinKern x86 - Buffer overflow basic 1 1% 266 85 franb 0
pas_valide LinKern x86 - Null pointer dereference 1% 278 90 franb 0
pas_valide LinKern x64 - Race condition 1% 178 95 franb 0
pas_valide ELF ARM - Alphanumeric shellcode 1% 21 100 pickle 0
pas_valide ELF MIPS - URLEncoded Format String bug 1% 9 100 pickle 0
pas_valide ELF x86 - Hardened binary 1 1% 499 100 sm0k 0
pas_valide ELF x86 - Hardened binary 2 1% 392 100 sm0k 0
pas_valide ELF x86 - Hardened binary 3 1% 247 100 sm0k 0
pas_valide ELF x86 - Hardened binary 4 1% 277 100 sm0k 0
pas_valide LinKern MIPSel - Vulnerable ioctl 1% 17 100 pickle 0
pas_valide LinKern x64 - reentrant code 1% 95 100 franb 0
pas_valide ELF ARM - Heap format string bug 1% 41 105 franb 0
pas_valide ELF x64 - Sigreturn Oriented Programming 1% 169 105 Arod 0
pas_valide ELF ARM - Format String bug 1% 49 110 pickle 0
pas_valide ELF ARM - Use After Free 1% 46 110 pickle 0
pas_valide ELF x64 - Heap feng-shui 1% 37 110 laxa 0
pas_valide ELF x64 - Off-by-one bug 1% 82 110 NeedToLearn 0
pas_valide ELF x86 - Hardened binary 5 1% 208 110 sm0k 0
pas_valide LinKern ARM - Stack Overflow 1% 27 110 pickle 0
pas_valide LinKern x86 - basic ROP 1% 139 110 franb 0
pas_valide ELF ARM - Heap Off-by-One 1% 30 115 pickle 0
pas_valide ELF x64 - Remote Heap buffer overflow 1 1% 102 115 Tosh 0
pas_valide ELF x86 - Hardened binary 6 1% 197 115 sm0k 0
pas_valide ELF x86 - Hardened binary 7 1% 161 115 Tosh 0
pas_valide ELF x86 - Remote stack buffer overflow - Hardened 1% 89 115 franb 0
pas_valide LinKern x64 - RowHammer 1% 24 115 pickle 0
pas_valide LinKern x64 - SLUB off-by-one 1% 14 115 Tosh 0
pas_valide ELF ARM - Heap buffer overflow - Wilderness 1% 19 120 pickle 0
pas_valide ELF ARM - Heap Overflow 1% 22 120 pickle 0
pas_valide ELF x64 - Seccomp Whitelist 1% 33 120 pickle 0
pas_valide ELF x86 - Blind ROP 1% 61 120 franb 0
pas_valide Linkern x64 - Memory exploration 1% 62 120 franb 0
pas_valide ELF x64 - Remote Heap buffer overflow 2 1% 73 130 Tosh, Fritz 0
pas_valide ELF x64 - Blind ROP 1% 41 135 franb 0
pas_valide ELF x64 - Browser exploit - BitString 1% 15 135 pickle 0