Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

why the crash poc do not work #1

Open
b33t1e opened this issue Feb 26, 2018 · 7 comments
Open

why the crash poc do not work #1

b33t1e opened this issue Feb 26, 2018 · 7 comments
Labels

Comments

@b33t1e
Copy link

b33t1e commented Feb 26, 2018

my firmware is asav-941-200.qcow2, the version info are shown below:
default
of course, the 64 bit catches my eyes! I note this on my config all the time.
I enable the snmp, ikev1, ikev2, webvpn on asa by "Configuring a Cisco ASA test environment from ground zero" and "asadbg/config/", thanks a lot. I verified every service works well.
default
default
default
every thing is OK, I'm ready to use the poc. But, nothing happend. Do not crash. Why???
default
default

@fidgetingbits
Copy link
Collaborator

I'd double check you're running the public PoC that sends the request twice. The original PoC didn't.

@b33t1e
Copy link
Author

b33t1e commented Feb 27, 2018

The poc I use is https://www.exploit-db.com/exploits/43986/, It's that anything wrong?
default

@b33t1e
Copy link
Author

b33t1e commented Feb 27, 2018

I note the http status code is 302, So I changed the poc to allow the request redirect. That is:
default
I use this poc, and the result is:
default
And the Cisco ASA is still not crash.

@fidgetingbits
Copy link
Collaborator

You shouldn't need the redirect enabled. The PoC you linked won't work by default. The authors fixed it on pastebin at some point. I don't recall off the top of my head if the 302 response is normal, and don't have time to test atm, but I'd try the other PoC for now.

@kiritowch
Copy link

Using the modified POC, I can't trigger crash, can you trigger now?

@b33t1e
Copy link
Author

b33t1e commented Mar 1, 2018

No :(
I will look it further to try make the poc work. Just try, because it's so hard for me. But it's interesting ^_^

@b33t1e
Copy link
Author

b33t1e commented Mar 27, 2018

hey, bro!
The same question I met when I read this tutorial, I do not use this method. I just ignored this.
I just show you my network
default
the ASAv ip:
default
this cloud should connect some network card(virtual or real):
default
the ip I use to debug the asav:
default
That is mean just to make the network connected.
Hope this will help.
Oh, my id is b33t1e, not b33tle :)

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Projects
None yet
Development

No branches or pull requests

3 participants