CVE-2004-0158
lbreakout2 - Buffer Overflow via Large HOME Environment Variable
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2004-0158. PoCs published by Li0n7.
AI-analyzed exploit summary This exploit targets a buffer overflow vulnerability in LBreakout2 < 2.4beta-2 by manipulating the HOME environment variable to execute arbitrary shellcode. It includes both a targeted attack mode (with a specified return address) and a brute-force mode to guess the correct return address.
Description
Buffer overflow in lbreakout2 allows local users to gain 'games' group privileges via a large HOME environment variable to (1) editor.c, (2) theme.c, (3) manager.c, (4) config.c, (5) game.c, (6) levels.c, or (7) main.c.
Exploits (1)
This exploit targets a buffer overflow vulnerability in LBreakout2 < 2.4beta-2 by manipulating the HOME environment variable to execute arbitrary shellcode. It includes both a targeted attack mode (with a specified return address) and a brute-force mode to guess the correct return address.