CVE-2007-1568
DaanSystems NewsReactor 20070220.21 - Stack-Based Buffer Overflow via yEnc Filename
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2007-1568. PoCs published by Marsu.
AI-analyzed exploit summary This exploit targets a buffer overflow in NewsReactor 20070220 by crafting a malicious NNTP article. It leverages a JMP EDI instruction in advapi32.dll (XP SP2 FR) to redirect execution to shellcode that spawns calc.exe.
Description
Stack-based buffer overflow in DaanSystems NewsReactor 20070220.21 allows remote attackers to execute arbitrary code via a yEnc (yEncode) encoded article with a long filename.
Exploits (2)
This exploit targets a buffer overflow in NewsReactor 20070220 by crafting a malicious NNTP article. It leverages a JMP EDI instruction in advapi32.dll (XP SP2 FR) to redirect execution to shellcode that spawns calc.exe.
This exploit targets a remote buffer overflow in NewsReactor 20070220 by sending a maliciously crafted article with an overly long filename. It executes calc.exe via shellcode when the victim connects to a fake NNTP server (port 119).