Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Added module for CVE-2012-0267 #813

Merged
merged 1 commit into from Sep 20, 2012
Merged

Added module for CVE-2012-0267 #813

merged 1 commit into from Sep 20, 2012

Conversation

jvazquez-r7
Copy link
Contributor

Because of the vulnerability (see notes at the end of the module) DEP bypass has not been achieved.

The derefence is done against a buffer on the heap as base, and user controlled parameter as offset. The buffer on the heap is allocated along the activex initialization, and doesn't use the default heap. Because of this achieving heap feng shui doesn't seem easy. As we added a module for cve-2012-0266 too (see #812) I've added it anyway for CVE coverage. And it's an interesting vuln anyway :)

@wchen-r7 wchen-r7 merged commit b61c8b8 into rapid7:master Sep 20, 2012
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

2 participants