Description
SocuSoft iPod Photo Slideshow 8.05 contains a buffer overflow vulnerability in the registration dialog that allows local attackers to execute arbitrary code by overwriting the structured exception handler. Attackers can craft malicious input in the Registration Name and Registration Key fields to trigger a stack-based buffer overflow and execute a reverse shell payload.
Problem types
Product status
Credits
Shubham Singh
References
www.exploit-db.com/exploits/45350 (ExploitDB-45350)
www.dvd-photo-slideshow.com/ipod-photo-slideshow.html (Product Reference)
www.vulncheck.com/...pod-photo-slideshow-buffer-overflow-seh (VulnCheck Advisory: SocuSoft iPod Photo Slideshow 8.05 Buffer Overflow SEH)