vendor:
Adrenalin Player
by:
onying
N/A
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: Adrenalin Player
Affected Version From: 2.2.5.3
Affected Version To: 2.2.5.3
Patch Exists: NO
Related CWE: Unknown
CPE: cpe:2.3:a:adrenalin_player:adrenalin_player:2.2.5.3:*:*:*:*:*:*:*
Platforms Tested: Windows XP SP3
2013
Adrenalin Player (SEH) Buffer Overflow
This exploit takes advantage of a buffer overflow vulnerability in Adrenalin Player. By sending a specially crafted payload, an attacker can overwrite the Structured Exception Handler (SEH) to execute arbitrary code. The exploit uses a combination of NOP padding, a short jump, and a POP POP RETN sequence to achieve code execution. Additionally, it includes a shellcode payload to create a bind shell on port 4444. The exploit has been tested on Windows XP SP3.
Mitigation:
To mitigate this vulnerability, users should update to a patched version of Adrenalin Player or switch to a different media player. Additionally, users should exercise caution when opening media files from untrusted sources.