Exploitation Summary
EIP tracks 2 public exploits for CVE-2009-0350. PoCs published by Encrypt3d.M!nd, Houssamix.
AI-analyzed exploit summary This exploit demonstrates a buffer overflow vulnerability in Merak Media Player 3.2 by crafting a malicious .m3u file that overwrites the SEH (Structured Exception Handler) and executes arbitrary shellcode (calc.exe). The exploit uses a standard SEH bypass technique with a short jump and NOP sled.
Description
Stack-based buffer overflow in Merak Media Player 3.2 allows remote attackers to execute arbitrary code via a long string in a .m3u playlist file, related to the status bar icon's tooltip. NOTE: some of these details are obtained from third party information.
Exploits (2)
This exploit demonstrates a buffer overflow vulnerability in Merak Media Player 3.2 by crafting a malicious .m3u file that overwrites the SEH (Structured Exception Handler) and executes arbitrary shellcode (calc.exe). The exploit uses a standard SEH bypass technique with a short jump and NOP sled.
This exploit demonstrates a local buffer overflow in Merak Media Player V3.2 via a crafted .m3u file, leveraging SEH overwrite with a predictable pattern. It generates a malicious file to trigger the vulnerability.