Skip to content
Branch: master
Find file History
Fetching latest commit…
Cannot retrieve the latest commit at this time.
Permalink
Type Name Latest commit message Commit time
..
Failed to load latest commit information.
README.md
exploit.ogg

README.md

CVE-2007-5301

Experiment Environment

Ubuntu 10.04 LTS

INSTALL & Configuration

wget https://github.com/mudongliang/source-packages/raw/master/CVE-2007-5301/alsaplayer_0.99.76.orig.tar.gz
tar -xvf alsaplayer_0.99.76.orig.tar.gz
cd alsaplayer-0.99.76
./configure
make

Problems in Installation & Configuration

How to trigger vulnerability

./app/alsaplayer exploit.ogg

PoCs

AlsaPlayer Vorbis Input Plug-in OGG Processing Remote Buffer Overflow Vulnerability

AlsaPlayer 0.99.x - Vorbis Input Plugin OGG Processing Remote Buffer Overflow

AlsaPlayer Vorbis Input Plug-in OGG Processing Remote Buffer Overflow Vulnerability

Vulnerability Details & Patch

Root Cause

Stack Trace

Patch

References

You can’t perform that action at this time.