[20590] in bugtraq
Re: Microsoft Media Player ASX Parser buffer overflow
daemon@ATHENA.MIT.EDU (ByteRage)
Fri May 11 11:27:38 2001
MIME-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Message-ID: <20010506181315.89465.qmail@web13002.mail.yahoo.com>
Date: Sun, 6 May 2001 11:13:15 -0700
Reply-To: ByteRage <byterage@YAHOO.COM>
From: ByteRage <byterage@YAHOO.COM>
To: BUGTRAQ@SECURITYFOCUS.COM
In-Reply-To: <F250k4RFfJV3uS1Mbys0000bac9@hotmail.com>
I found yet another bof condition in the ASX VERSION
tag : an *.ASX file with the contents :
<ASX VERSION="AAAAAAAAAAA ... AAAAAAA">
crashes MPLAYER 6.4 in dxmasf.dll...
greetz,
[ByteRage] <byterage@yahoo.com>
http://elf.box.sk/byterage
> REVELATION:
>
> HREF attribute of BANNER tag can be abused to smash
> our lovely stack.
>
> This information applies to Media Player 6.4 at
> least.
__________________________________________________
Do You Yahoo!?
Yahoo! Auctions - buy the things you want at great prices
http://auctions.yahoo.com/