swfdump v0.9.2 was discovered to contain a heap buffer overflow in the function swf_GetPlaceObject at swfobject.c.
The product writes data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
http://swfdump.com | broken link |
https://github.com/keepinggg/poc/blob/main/poc_of_swfdump/poc | third party advisory exploit |
https://github.com/matthiaskramm/swftools | product |
https://github.com/matthiaskramm/swftools/issues/197 | issue tracking exploit third party advisory |
https://github.com/keepinggg/poc/tree/main/poc_of_swfdump | third party advisory exploit |