导航

Web安全手册

分享本身就是件快乐的事 我因别人得到帮助而感到幸福

« 一种真正意义上的Session劫持Download SUMO Linux »

MS Windows Media Player * (.WAV) Remote Integrer Overflow

From:
Date: 24 Dec 2008 23:32:58 -0000

('binary' encoding is not supported, stored as-is) ----------------------------------------------------------------------------------------|
MS Windows Media Player * (.WAV) Remote Integrer Overflow |
|
Application: ALL Windows Media player |
|
Web Site: www.microsoft.com |
|
Platform: Windows ALL |
|
Bug: Remote Integrer Overflow |
|
Tested agains: WMP 9, 10, 11, vista sp1, windows 7(from the HEC leak), windows XP sp3 |
|
Merry-Christmas to all ;) |
----------------------------------------------------------------------------------------|
|
1) Introduction |
|
2) Bug |
|
3) Proof of concept |
|
4) Credits |
|
------------------------|



------------------------|
1) Introduction |
|
------------------------|


"Windows Media Player 11 for Windows XP offers great new ways to store and enjoy all your music, video, pictures, and recorded TV.
Play it, view it, and sync it to a portable device for enjoying on the go or even share with devices around your home?all from one place."


----------|
|
2) Bug |
|
----------|
Windows Media player fails to handle exeptional condition when parsing a malformed WAV,SND,MID file.
which can lead to a remote integrer overflow.



--------------------|
|
3)Proof of concept |
|
--------------------|

-----------|
|
4)Credits |
|
-----------|

laurent.gaffie{remove_this}[at]gmail[dot]com
Received on Dec 25 2008


Reference:
http://seclists.org/bugtraq/2008/Dec/0247.html
  • 相关文章:
  • quote 1.Trace
  • Windows Media Player crash not exploitable for code execution
    http://blogs.technet.com/swi/archive/2008/12/29/windows-media-player-crash-not-exploitable-for-code-execution.aspx
  • 2008-12-30 11:00:08 回复该留言

发表评论:

◎欢迎参与讨论,请在这里发表您的看法、交流您的观点。

Powered By Z-Blog .Theme from Google黑板报 By Washun

Copyright 2008-2009 Pcsec.org. Some Rights Reserved.苏ICP备08110306号

Search

网站分类

文章归档

最新评论及回复

最近发表