[20590] in bugtraq

home help back first fref pref prev next nref lref last post

Re: Microsoft Media Player ASX Parser buffer overflow

daemon@ATHENA.MIT.EDU (ByteRage)
Fri May 11 11:27:38 2001

MIME-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Message-ID:  <20010506181315.89465.qmail@web13002.mail.yahoo.com>
Date:         Sun, 6 May 2001 11:13:15 -0700
Reply-To: ByteRage <byterage@YAHOO.COM>
From: ByteRage <byterage@YAHOO.COM>
To: BUGTRAQ@SECURITYFOCUS.COM
In-Reply-To:  <F250k4RFfJV3uS1Mbys0000bac9@hotmail.com>

I found yet another bof condition in the ASX VERSION
tag : an *.ASX file with the contents :

<ASX VERSION="AAAAAAAAAAA ... AAAAAAA">

crashes MPLAYER 6.4 in dxmasf.dll...

greetz,
[ByteRage] <byterage@yahoo.com>
http://elf.box.sk/byterage

> REVELATION:
>
> HREF attribute of BANNER tag can be abused to smash
> our lovely stack.
>
> This information applies to Media Player 6.4 at
> least.

__________________________________________________
Do You Yahoo!?
Yahoo! Auctions - buy the things you want at great prices
http://auctions.yahoo.com/

home help back first fref pref prev next nref lref last post