Subscribe via feed.
Archive for August, 2016

Microsoft GDI+ ValidateBitmapInfo Out-Of-Bounds Write

Posted by deepcore under exploit (No Respond)

Microsoft GDI+ out-of-bounds write proof of concept exploit that works due to invalid pointer arithmetic in ValidateBitmapInfo.

Microsoft GDI+ DecodeCompressedRLEBitmap Out-Of-Bounds Write

Posted by deepcore under exploit (No Respond)

Microsoft GDI+ out-of-bounds write proof of concept exploit that works due to invalid pointer arithmetic in DecodeCompressedRLEBitmap.

Microsoft GDI+ EMR_EXTTEXTOUTA / EMR_POLYTEXTOUTA Buffer Overflow

Posted by deepcore under exploit (No Respond)

There exists a Microsoft GDI+ heap-based buffer overflow vulnerability in the handling of EMR_EXTTEXTOUTA and EMR_POLYTEXTOUTA records.

Microsoft Windows Kernel win32k.sys FON Divide-By-Zero

Posted by deepcore under exploit (No Respond)

There exists a Microsoft Windows kernel win32k.sys FON font processing divide-by-zero exception in win32k!MAPPER::bFoundExactMatch.

Siemens IP-Camera Unauthenticated Remote Credential Disclosure

Posted by deepcore under exploit (No Respond)

Siemens IP-Camera versions x.2.2.1798, CxMS2025_V2458_SP1, x.2.2.1798, and x.2.2.1235 suffer from an unauthenticated credential disclosure vulnerability.

[papers] Exploiting WebKit on Vita 3.60

Posted by deepcore under Security (No Respond)

Exploiting WebKit on Vita 3.60

Tags: ,

[webapps] X-Cart < 4.1.3 – Arbitrary Variable Overwrite

Posted by deepcore under Security (No Respond)

X-Cart < 4.1.3 – Arbitrary Variable Overwrite

Tags: ,

[webapps] – Honeywell IP-Camera HICC-1100PT – Credentials Disclosure

Posted by deepcore under Security (No Respond)

Honeywell IP-Camera HICC-1100PT – Credentials Disclosure

Tags: ,

[remote] – Cisco ASA 8.X – Authentication Bypass (EXTRABACON)

Posted by deepcore under Security (No Respond)

Cisco ASA 8.X – Authentication Bypass (EXTRABACON)

Tags: ,

[webapps] – SIEMENS IP Camera CCMW1025 x.2.2.1798 – Remote Admin Credentials Change

Posted by deepcore under Security (No Respond)

SIEMENS IP Camera CCMW1025 x.2.2.1798 – Remote Admin Credentials Change

Tags: ,