Mailing List Archive

PE Explorer Heap Overflow Vulnerability
Product link: http://www.heaventools.com/PE_Explorer_disassembler.htm

Affected version: 1.99 R6.

Type of vulnerability: Heap Overflow.

For further information:
http://waleedassar.blogspot.com/2012/05/pe-explorer-heap-overflow-vulnerability.html

Proof of concept:
http://ollytlscatch.googlecode.com/files/PEExplorer_HO.exe

N.B. Not much efforts have been made into this POC. It just crashes the
application but code execution is possible.

Waliedassar