OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Win32hlp exploit for : ":LINK overflow"

From: descript (descriptsv98.s0h.cc)
Date: Sat Mar 08 2003 - 18:38:28 CST


hi list,

In date Sunday, 9 March, 2003 1:00 AM s0h released an exploit : Win32hlp exploit for : ":LINK overflow"

Source : http://s0h.cc/exploit/s0h_Win32hlp.c
Binary : http://s0h.cc/exploit/s0h_Win32hlp.exe

Discovered by ThreaT <threats0h.cc>.
Coded by ThreaT <threats0h.cc>
Hompage : http://s0h.cc/~threat/

This exploit can trap a .CNT file (file with .HLP files) with the arbitrary code who can download and execute a trojan without user ask.

This exploit was tested on :
        - Windows 2000 PRO/SERVER (fr) SP0
        - Windows 2000 PRO/SERVER (fr) SP1
        - Windows 2000 PRO/SERVER (fr) SP2

Best regards,
descript <descripts0h.cc>
s0h - Skin of humanity
http://s0h.cc