Description
Audiograbber 1.83 contains a local buffer overflow vulnerability that allows attackers to execute arbitrary code by exploiting structured exception handling mechanisms. Attackers can craft malicious input in the Interpret or Album fields that triggers a buffer overflow, overwriting SEH pointers and executing injected shellcode with application privileges.
Problem types
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
Product status
Credits
Dennis 'dhn' Herrmann
References
www.exploit-db.com/exploits/44903 (ExploitDB-44903)
www.audiograbber.org/ (Official Product Homepage)
www.vulncheck.com/...iograbber-local-buffer-overflow-via-seh (VulnCheck Advisory: Audiograbber 1.83 Local Buffer Overflow via SEH)