CVE-2008-0625
Yahoo! Music Jukebox 2.2.2.56 - Buffer Overflow via MediaGrid ActiveX AddBitmap Method
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-0625. PoCs published by Elazar.
AI-analyzed exploit summary This is a buffer overflow exploit targeting the Yahoo! JukeBox MediaGrid ActiveX Control (mediagrid.dll) via the AddBitmap() method. It uses heap spraying and two Metasploit-generated shellcodes (calc.exe and bind shell) to achieve remote code execution.
Description
Buffer overflow in the MediaGrid ActiveX control (mediagrid.dll) in Yahoo! Music Jukebox 2.2.2.56 allows remote attackers to execute arbitrary code via a long argument to the AddBitmap method.
Exploits (1)
This is a buffer overflow exploit targeting the Yahoo! JukeBox MediaGrid ActiveX Control (mediagrid.dll) via the AddBitmap() method. It uses heap spraying and two Metasploit-generated shellcodes (calc.exe and bind shell) to achieve remote code execution.