04.04.2016 Views

A New CVE-2015-0057 Exploit Technology

asia-16-Wang-A-New-CVE-2015-0057-Exploit-Technology

asia-16-Wang-A-New-CVE-2015-0057-Exploit-Technology

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Obstacles Solutions<br />

1. Using the Zombie tagPROPLIST and the crafted,<br />

fake tagPROPLIST object alternately to modify the rgItems and<br />

cItems fields of tagMENU means that obstacle 1 is solved.<br />

2. Having full control over the cEntries and iFirstFree fields of the<br />

Zombie tagPROPLIST object means that obstacle 2 is solved.

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!