# tiffsplit (libtiff <= 3.8.2) local stack buffer overflow PoC tiffsplit from libtiff (http://www.remotesensing.org/libtiff/) is vulnerable to a bss-based and stack-based overflow, but, I just wrote the concept c0de for stack-based b0f 'cause I don't know how to take advantage of the overwritten bss data (after the overflow, that data is overwritten again correctly by a program' function). .bss section is in higher addresses than .dtors section, so, we can't hijack .dtors to.... PoC: http://www.milw0rm.xmc.pl/sploits/05262006-tiffspl33t.tar.gz nitr0us <nitrousenador[at]gmail[dot]com> # milw0rm.xmc.pl [8x16*32^n]
Polish:
Webdeveloper |
Probably the best hosting company Interserver
SEO Shop:
Multi-quality SEO links |
Best Proxy Service.
Group: xmc.pl