CVE-2012-4329
Samsung D6000 Firmware - Denial of Service via Crafted Controller Name
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2012-4329. PoCs published by Luigi Auriemma.
AI-analyzed exploit summary The writeup details two vulnerabilities in Samsung devices with remote controller support: an endless restart loop triggered by invalid name strings and a potential buffer overflow via long MAC address strings. The analysis includes technical details about the protocol and exploitation steps but lacks direct exploit code.
Description
The Samsung D6000 TV and possibly other products allow remote attackers to cause a denial of service (continuous restart) via a crafted controller name.
Exploits (2)
The writeup details two vulnerabilities in Samsung devices with remote controller support: an endless restart loop triggered by invalid name strings and a potential buffer overflow via long MAC address strings. The analysis includes technical details about the protocol and exploitation steps but lacks direct exploit code.
This is a technical writeup by Luigi Auriemma detailing three vulnerabilities in Samsung NET-i ware, including an endless loop in remote services, code execution in the ConnectDDNS ActiveX, and a stack overflow in the BackupToAvi ActiveX. The writeup provides assembly-level analysis and references external PoC code.