Baidu Hi IM software parsing...

- AV AC AU C I A
发布: 2025-04-13
修订: 2025-04-13

Our automatic bug exploiting tools have found a buffer overflow bug in Baidu Hi IM software which is a popular IM software in China. This bug is due to Baidu Hi do not strictly check the deciphered plaintext format in CSTransfer.dll. Because of encryption mechanism of Baidu Hi, it is hard to generate the proper malicious packet, but not say it's impossible. A proper malicious packet can cause client system full controlled. -- Vendor Response: I contacted with Baidu a month ago, no any response from Baidu. -- Credit: This vulnerability was discovered by: Gen LI & Jun MA & Ying Zhang More Detail : (CSTransfer.dll) esi +---------------------+ | | | \|/ | Malicious input | ___ | ...........> | | | | | | | | | +---------------------+ |R | |4 |0 | |\r |\n | .... | |__|__|__|__|__|___|___|___| /| | ebp +---------------------+ | | | Correct content | __ | ...........> | | | | | | | | | | | | | | | | +---------------------+ | c| m | | 1| . |0 | |R | |4 |0 | |\r |\n | .... |...

0%
暂无可用Exp或PoC
当前有0条受影响产品信息