|
 |
您现在的位置: 红色黑客联盟 >> 教程 >> 黑客技术 >> Exploite >> 正文 |
| MS Windows GDI (EMR_COLORMATCHTOTARGETW) Exploit MS08-021 |
|
|
|
| 文章录入:7747.Net 责任编辑:7747.Net |
|
|
【字体:小 大】 |
|
EMR_COLORMATCHTOTARGETW stack buffer overflow exploit By Ac!dDrop
This is one of the 2 Vulnerabilities of MS08-021
Tested on Windows xp professional SP1 GDi32.dll 5.1.2600.1106 kernel32.dll 5.1.2600.1106 ws2_32.dll 5.1.2600.0
calc.zip—> executes calculator IE.zip and localhost.zip ——> connects at localhost at port 230
On Windows Xp Sp2 only causes Denial of service. -(Vulnerable function guarded with a GS cookie) -(The function which copies data to stack has an exception handler which recovers from access violations so u cant exploit it by hitting next page ).
http://milw0rm.com/sploits/2008-Gdi.tgz
# milw0rm.com [2008-10-02] |
| |
| 您对本文章有什么意见或着疑问吗?请到论坛讨论您的关注和建议是我们前行的参考和动力 |
|
|
| |
上一篇文章: Serv-U 7.2.0.1 Remote FTP File Replacement Vulnerability (auth)
下一篇文章: 没有了 |
| 【发表评论】【加入收藏】【告诉好友】【打印此文】【关闭窗口】 |