/*****************************************************************************
* Microsoft Windows .doc File Malformed Pointers DoS *
* *
* *
* *
* Just move your mouse on the file and explorer crashes. If it does not try *
* to look at file properties. *
* Bug comes from Ole32.dll: *
* CMP DWORD PTR DS:[EAX EBX],3 and we can set EAX, EDX and ESI with arbitrary *
* values. *
* *
* Check the file, magic offsets are *
* 4460 -> EDX *
* 4519 -> ESI *
* *
* *
* Successfully tested on Windows 2000 SP4 FR and XP SP2 FR. *
* *
* Coded by Marsu <MarsupilamiPowa@hotmail.fr> *
*****************************************************************************/
【MS Windows (.doc File) Malformed Pointers Denial of Service Exploit】相关文章:
★ DESlock 3.2.7 (vdlptokn.sys) Local Denial of Service Exploit
★ Scripteen Free Image Hosting Script 1.2 (cookie) Pass Grabber Exploit
★ Quicksilver Forums 1.4.1 forums[] Remote SQL Injection Exploit
★ Wordpress Plugin Download Manager 0.2 Arbitrary File Upload Exploit
★ Microsoft DNS Server (Dynamic DNS Updates) Remote Exploit
★ Mercury Mail 4.0.1 (LOGIN) Remote IMAP Stack Buffer Overflow Exploit
★ Download Accelerator Plus - DAP 8.x m3u File Buffer Overflow Exploit (c)
★ Joomla Component n-forms 1.01 Blind SQL Injection Exploit
★ Yahoo Messenger 8.1 ActiveX Remote Denial of Service Exploit
★ FreeBSD mcweject 0.9 (eject) Local Root Buffer Overflow Exploit