/* * sxncat by Davide Libenzi (connect to a TCP server and execute an inted-like binary) * Copyright (C) 1999 Davide Libenzi * * This program is free software; you can redistribute it and/or modify * it under the terms of the GNU General Public License as published by * the Free Software Foundation; either version 2 of the License, or * (at your option) any later version. * * This program is distributed in the hope that it will be useful, * but WITHOUT ANY WARRANTY; without even the implied warranty of * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the * GNU General Public License for more details. * * You should have received a copy of the GNU General Public License * along with this program; if not, write to the Free Software * Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA * * Davide Libenzi * */ #include #include #include #include #include #include #include #include #include #include #include static void usage(char const *prg) { fprintf(stderr, "use: %s -s HOST -p PORT [-u UID] [-g GID] PATH [ARGS ...]\n", prg); } int main (int ac, char **av) { int i, port = -1, sfd, uid = -1, gid = -1, status; char const *host = NULL; pid_t pid; struct hostent *he; struct in_addr inadr; struct sockaddr_in addr; for (i = 1; i < ac; i++) { if (strcmp(av[i], "-p") == 0) { if (++i < ac) port = atoi(av[i]); } else if (strcmp(av[i], "-s") == 0) { if (++i < ac) host = av[i]; } else if (strcmp(av[i], "-u") == 0) { if (++i < ac) uid = atoi(av[i]); } else if (strcmp(av[i], "-g") == 0) { if (++i < ac) gid = atoi(av[i]); } else break; } if (i == ac || port < 0 || host == NULL) { usage(av[0]); return 1; } if ((sfd = socket(AF_INET, SOCK_STREAM, 0)) == -1) { perror("socket"); return 2; } if (inet_aton(host, &inadr) == 0) { if ((he = gethostbyname(host)) == NULL) { fprintf(stderr, "unable to resolve: %s\n", host); return 3; } memcpy(&inadr.s_addr, he->h_addr_list[0], he->h_length); } memset(&addr, 0, sizeof(addr)); addr.sin_family = AF_INET; memcpy(&addr.sin_addr, &inadr.s_addr, 4); addr.sin_port = htons((short int) port); if (connect(sfd, (struct sockaddr *) &addr, sizeof(addr)) < 0) { perror("connect"); close(sfd); return 4; } if ((pid = fork()) == 0) { if (gid >= 0 && setgid(gid)) { perror("setgid"); return 5; } if (uid >= 0 && setuid(uid)) { perror("setuid"); return 6; } dup2(sfd, 0); dup2(sfd, 1); dup2(sfd, 2); close(sfd); execvp(av[i], &av[i]); exit(7); } close(sfd); if (pid == -1) { perror("fork"); return 8; } waitpid(pid, &status, 0); return 0; }