[prev in list] [next in list] [prev in thread] [next in thread]
List: bugtraq
Subject: WMF: New Metasploit Framework Module
From: H D Moore <sflist () digitaloffense ! net>
Date: 2005-12-31 7:36:20
Message-ID: 200512310136.21021.sflist () digitaloffense ! net
[Download RAW message or body]
We just released a new version of the Metasploit Framework exploit module
for the Escape/SetAbortFunc code execution flaw. This module now pads the
Escape() call with random WMF records. You may want to double check your
IDS signatures -- most of the ones I saw today could be easily bypassed
or will false positive on valid graphic files.
Available via msfupdate, the 2.5 snapshot, or straight from the web site:
http://metasploit.com/projects/Framework/exploits.html#ie_xp_pfv_metafile
-HD
[prev in list] [next in list] [prev in thread] [next in thread]
Configure |
About |
News |
Add a list |
Sponsored by KoreLogic