![]() |
Another vuln, this time its PEiD.
Possible code execution vulnerability.
http://secunia.com/advisories/13984/ I have said it before, be careful with wich binarys you crack / debug. Cheers ghalen |
Code:
TITLE: |
Is it can be used for crashing my system when a proggie is scanned with PEiD?
|
Yes it is possible to crash your system, even run arbitrary code.
But only if you debug a specially crafted binary. Cheers ghalen |
well an exploit can make it crash your system or if thier intentions are malicous they can install backdoors own your system make you system
a denial of service bot make it a server what ever it all depends on the code that is executed once the vulnerability yields control to malicious code for example you open an exe that is crafted maliciously in any of the vulnerable app an exe call Dothis Function () looking like this in assembly 0x 401000 call 0x401028 0x401005 test eax,eax now in stack you will see a pointer to the return value viz return to 401005 from 401000 now if they change the 401005 to 401278 where the malicious code exist the app will return to 401278 not 401005 and will execute the code that is there in 401278 now what one codes there is upto the wierdest dreams and imagination of the coder i hope i made it a little clear |
Sure it can, but you can't implement this as an Protection because the Exploit would make the PE-File invalid.
|
Already fixed with anothers undocumented vuln : PEiD v0.93
h**p://www.secretashell.com/PEiD/viewtopic.php?t=150 h**p://www.secretashell.com/codomain/peid/files/PEiD-0.93-20050130.zip |
cobi, i dunno if you read the idefense advisory or not they have stated that they have crafted a pe which exploits this vulnerabilty withouy ending up as invalid pe in ida and the great ppl of ida has issued a patch so i would assume that they are not bullshitting and ilfak guilfanov wouldnt be so lame to accede to any of that bullshit
if it were bullshit which obviously would have punctured the egos and issue a patch which puportedly would patch this vulnerability or as marc posted snaker,jibz and the others who are behind peid wont issue the patch unless i assume they saw that it was working or bengaly wouldnt revise pvdasm edition anyway there is no offense in the above comment it is only a view point and i neither use ida or wdsam if i require a packer version i use kaspersky online scan which offers more info on packer than peid would and i dont have to execute malicious binaries in my system :) |
Whops, sorry, i've just read the iDEFENSE statement
Quote:
|
| All times are GMT +8. The time now is 23:13. |
Powered by vBulletin® Version 3.8.8
Copyright ©2000 - 2026, vBulletin Solutions, Inc.
Always Your Best Friend: Aaron, JMI, ahmadmansoor, ZeNiX