Mock SMTP Server 1.0 Remote Crash PoC
The Mock SMTP Server 1.0 is vulnerable to a remote crash when an attacker sends a malicious input to the server. The malicious input consists of two NOPs followed by a carriage return and line feed. This causes the server to crash and the Exception occured on EBX Register (E0434F4D). The Registers during the crash are EAX 03BAF618, ECX 00000000, EDX 00000028, EBX E0434F4D, ESP 03BAF614, EBP 03BAF668, ESI 03BAF6A4, EDI 001DFF28, EIP 7C812FD3 KERNEL32.7C812FD3, C 0 ES 0023 32bit 0(FFFFFFFF), P 0 CS 001B 32bit 0(FFFFFFFF), A 0 SS 0023 32bit 0(FFFFFFFF), Z 0 DS 0023 32bit 0(FFFFFFFF), S 0 FS 003B 32bit 7FFD6000(FFF), T 0 GS 0000 NULL, D 0, O 0 LastErr WSAECONNRESET (00002746), EFL 00000202 (NO,NB,NE,A,NS,PO,GE,G), ST0 empty, ST1 empty, ST2 empty, ST3 empty, ST4 empty, ST5 empty, ST6 empty, ST7 empty.