vendor:
Mini-stream Ripper
by:
G4N0K
N/A
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: Mini-stream Ripper
Affected Version From: 3.0.1.1
Affected Version To: 3.0.1.1
Patch Exists: YES
Related CWE:
CPE: a:mini-stream_ripper:mini-stream_ripper:3.0.1.1
Platforms Tested: Windows XP SP2
2009
Mini-stream Ripper 3.0.1.1 .ASX File (HREF) Local Buffer Overflow Exploit
This exploit targets a buffer overflow vulnerability in Mini-stream Ripper 3.0.1.1. By sending a specially crafted .ASX file with a long HREF parameter, an attacker can overflow a buffer and potentially execute arbitrary code on the targeted system. The exploit has been tested on Windows XP SP2.
Mitigation:
The vendor has released a patch addressing this vulnerability. It is recommended to update to the latest version of Mini-stream Ripper to mitigate this issue.