|
Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com |
Re: [Full-disclosure] MS06-06 Windows Media Player Exploitation
From: c0ntex (c0ntexb
gmail.com)
Date: Thu Feb 16 2006 - 19:15:19 CST
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]
On 16/02/06, H D Moore <fdlist
digitaloffense.net> wrote:
> Still getting some annoying crashes (SEH trick in alphanum code is
> annoying when you are trying to debug something...), but the basic
> solution is:
Ye, we are on the same path if you looked at my notes, SEH works
flawlessly and can redirect no problem, but getting the stable
location to have it go is the problem. I had to reject the "pass
shellcode in the src="" method as I am finding your Alpha shellcode
skechy and not 100% alpha :p due to the FF and other annoying
characters, which cause it to bork.
I'm working on another method which is looking more realistic but I
need to wait til tomorrow now as I need to sleep :)
--
regards
c0ntex
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]