Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
BugTraq
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
Re: MS07-004 VML Integer Overflow Exploit Jan 17 2007 11:46AM
lifeasageek gmail com

Opps, what a stupid I am.
I used '\x05\x05\x05\x05' instead of '\x90\x90\x90\x90' for NOP operation.
But '\x05' opcode needs 4bytes operand, so there's crash if alignment didn't match.
Here goes revised exploit code.
It adds '\x90' 8 bytes just before shellcode.

<!--

MS07-004 VML integer overflo...

[ more ]  





 

Privacy Statement
Copyright 2009, SecurityFocus