środa, 26 grudnia 2018

Crashing VLC 3.0.4

This time I decided to prepare a quick fuzzing case(s) for latest VLC - (version 3.0.4 for  24.12.2018@01:24). Below you will find few details...
Few times before we tried to crash VLC Player. This time we will try 3.0.4 version available here:



Few details about the cases found during last few days you will find below:

Case #01:

---<windbg>---
eax=05609020 ebx=098a98b0 ecx=00000008 edx=00000000 esi=05609000 edi=098a98b0
eip=76549b60 esp=054ff788 ebp=054ff790 iopl=0         nv up ei pl zr na pe nc
cs=001b  ss=0023  ds=0023  es=0023  fs=003b  gs=0000             efl=00010246
msvcrt!memcpy+0x250:
76549b60 f3a5            rep movs dword ptr es:[edi],dword ptr [esi]

---<windbg>---


Case #02: (1, 2, 3)

---<windbg>---
eax=00000000 ebx=00000000 ecx=00000025 edx=00000000 esi=00000000 edi=00000000
eip=00000000 esp=06e6f2ec ebp=00000000 iopl=0         nv up ei pl zr na pe nc
cs=001b  ss=0023  ds=0023  es=0023  fs=003b  gs=0000             efl=00010246
00000000 ??              ???

---<windbg>---


Case #03:

---<windbg>---
eax=04370798 ebx=00000000 ecx=00200020 edx=04395a18 esi=01785768 edi=043707c4
eip=6b6eb7c4 esp=0487fa64 ebp=04370798 iopl=0         nv up ei ng nz ac pe cy
cs=001b  ss=0023  ds=0023  es=0023  fs=003b  gs=0000             efl=00010297
libmkv_plugin+0xb7c4:
6b6eb7c4 8b7314          mov     esi,dword ptr [ebx+14h] ds:0023:00000014=????????

---<windbg>---


Case #04: (1, 2, 3)

---<windbg>---
eax=00000000 ebx=00000000 ecx=00000000 edx=00000000 esi=6ab77aa0 edi=00000004
eip=6ab552c2 esp=06926ecc ebp=00000000 iopl=0         nv up ei pl nz na po nc
cs=001b  ss=0023  ds=0023  es=0023  fs=003b  gs=0000             efl=00010202
libfaad_plugin!vlc_entry_license__3_0_0f+0x1e72:
6ab552c2 d80493          fadd    dword ptr [ebx+edx*4] ds:0023:00000000=????????

---<windbg>---


Enjoy.

See you next time.

Cheers,
Cody



Brak komentarzy:

Prześlij komentarz