CVE-2006-2458
libextractor <= 0.5.13 - Remote Code Execution via ASF and QT Plugin Buffer Overflow
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-2458. PoCs published by Luigi Auriemma.
AI-analyzed exploit summary This exploit targets multiple heap overflow vulnerabilities in libextractor versions up to 0.5.13. The provided link points to a binary exploit archive, suggesting it contains compiled proof-of-concept code to trigger the overflows.
Description
Multiple heap-based buffer overflows in Libextractor 0.5.13 and earlier allow remote attackers to execute arbitrary code via (1) the asf_read_header function in the ASF plugin (plugins/asfextractor.c), and (2) the parse_trak_atom function in the QT plugin (plugins/qtextractor.c).
Exploits (1)
This exploit targets multiple heap overflow vulnerabilities in libextractor versions up to 0.5.13. The provided link points to a binary exploit archive, suggesting it contains compiled proof-of-concept code to trigger the overflows.