This vulnerability was ranked 10.0 (for Windows) in CPUoct2009 and related to improper AUTH_SESSKEY parameter length validation.
(Executable + source code)
I tried this example, but I don't see the overflow. Did you only overwrite a few bytes in the example or?
Comments
tested it
I tried this example, but I don't see the overflow.
Did you only overwrite a few bytes in the example or?