<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Buffer overflows in smcFanControl 2.1.2 for OSX</title>
	<atom:link href="http://kj.security.net.my/?feed=rss2&#038;p=127" rel="self" type="application/rss+xml" />
	<link>http://kj.security.net.my/?p=127</link>
	<description>collecting unknown malware</description>
	<lastBuildDate>Tue, 01 Jun 2010 04:19:20 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: 0xff</title>
		<link>http://kj.security.net.my/?p=127&#038;cpage=1#comment-52853</link>
		<dc:creator>0xff</dc:creator>
		<pubDate>Mon, 17 Nov 2008 09:33:09 +0000</pubDate>
		<guid isPermaLink="false">http://blog.xwings.net/?p=127#comment-52853</guid>
		<description>on my 10.5 machine, the smc tool is not installed with root privs, so to overflow it, one would need to control the params passed to it by the GUI tool.

the real WTF is that the GUI tool asks for the admin password and stores it in plain old memory. any user process should be able to read it in plaintext from there :D

0xff</description>
		<content:encoded><![CDATA[<p>on my 10.5 machine, the smc tool is not installed with root privs, so to overflow it, one would need to control the params passed to it by the GUI tool.</p>
<p>the real WTF is that the GUI tool asks for the admin password and stores it in plain old memory. any user process should be able to read it in plaintext from there :D</p>
<p>0xff</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: beist</title>
		<link>http://kj.security.net.my/?p=127&#038;cpage=1#comment-52635</link>
		<dc:creator>beist</dc:creator>
		<pubDate>Thu, 13 Nov 2008 11:25:10 +0000</pubDate>
		<guid isPermaLink="false">http://blog.xwings.net/?p=127#comment-52635</guid>
		<description>ola!</description>
		<content:encoded><![CDATA[<p>ola!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Sey</title>
		<link>http://kj.security.net.my/?p=127&#038;cpage=1#comment-52546</link>
		<dc:creator>Sey</dc:creator>
		<pubDate>Wed, 12 Nov 2008 06:05:48 +0000</pubDate>
		<guid isPermaLink="false">http://blog.xwings.net/?p=127#comment-52546</guid>
		<description>Whoaa...</description>
		<content:encoded><![CDATA[<p>Whoaa&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Cappella</title>
		<link>http://kj.security.net.my/?p=127&#038;cpage=1#comment-52529</link>
		<dc:creator>Cappella</dc:creator>
		<pubDate>Tue, 11 Nov 2008 14:17:24 +0000</pubDate>
		<guid isPermaLink="false">http://blog.xwings.net/?p=127#comment-52529</guid>
		<description>Woohoo! Well done! You actually exploit the code for managing fan. :P What other weird code you are going to exploit? :P</description>
		<content:encoded><![CDATA[<p>Woohoo! Well done! You actually exploit the code for managing fan. :P What other weird code you are going to exploit? :P</p>
]]></content:encoded>
	</item>
</channel>
</rss>
