/*****************************************************************************
* Microsoft Windows .doc File Malformed Pointers DoS *
* *
* *
* *
* Just move your mouse on the file and explorer crashes. If it does not try *
* to look at file properties. *
* Bug comes from Ole32.dll: *
* CMP DWORD PTR DS:[EAX EBX],3 and we can set EAX, EDX and ESI with arbitrary *
* values. *
* *
* Check the file, magic offsets are *
* 4460 -> EDX *
* 4519 -> ESI *
* *
* *
* Successfully tested on Windows 2000 SP4 FR and XP SP2 FR. *
* *
* Coded by Marsu <MarsupilamiPowa@hotmail.fr> *
*****************************************************************************/
【MS Windows (.doc File) Malformed Pointers Denial of Service Exploit】相关文章:
★ pSys 0.7.0 Alpha Multiple Remote File Inclusion Vulnerability
★ Scripteen Free Image Hosting Script 1.2 (cookie) Pass Grabber Exploit
★ Xerox Phaser 8400 (reboot) Remote Denial of Service Exploit
★ BoonEx Ray 3.5 (sIncPath) Remote File Inclusion Vulnerability
★ Yahoo Messenger 8.1 ActiveX Remote Denial of Service Exploit
★ LoveCMS 1.6.2 Final Remote Code Execution Exploit
★ Quicksilver Forums 1.4.1 forums[] Remote SQL Injection Exploit
★ moziloCMS 1.10.1 (download.php) Arbitrary Download File Exploit
★ Ultra Office ActiveX Control Remote Arbitrary File Corruption Exploit
★ Joomla Component n-forms 1.01 Blind SQL Injection Exploit