vendor:
Bs.Player
by:
Nine:Situations:Group::pyrokinesis and His0k4
7.8
CVSS
HIGH
Seh Overwrite
119
CWE
Product Name: Bs.Player
Affected Version From: 2.34
Affected Version To: 2.34
Patch Exists: Yes
Related CWE: N/A
CPE: a:bsplayer:bs.player
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows XP Pro SP2 Fr
2009
Bs.Player 2.34 (.bsl) Universal Seh Overwrite Exploit
This exploit is a universal SEH overwrite exploit for Bs.Player 2.34 (.bsl). It was written by Nine:Situations:Group::pyrokinesis and exploited by His0k4. It was tested on Windows XP Pro SP2 Fr. It uses a buffer of 412 A's followed by an EB 12 41 41, a D02658 02 SEH handler, 19 NOPs, and a 343 byte shellcode.
Mitigation:
Update to the latest version of Bs.Player.