vendor:
AtomixMP3
by:
0x58
7.5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: AtomixMP3
Affected Version From: AtomixMP3 2.3
Affected Version To: AtomixMP3 2.3
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested:
2007
AtomixMP3 2.3 (pls File) Local Buffer OverFlow
The exploit generates a malicious pls file for AtomixMP3 2.3 that triggers a local buffer overflow. It utilizes a return address at 0x77394540, jmp esp instruction in mswsock.dll on Windows XP Pro Version 2002. The exploit payload consists of padding (A x 516), the EIP overwrite with a jmp esp instruction, some NOPs, and a shellcode. The shellcode is a Windows command to execute the calculator program. The exploit was created by 0x58 and gives credit to miyyet, diablos5s5, vxroot, Str0ke, and Metasploit.
Mitigation:
To mitigate this vulnerability, it is recommended to update AtomixMP3 to a newer version that has addressed the buffer overflow issue.