![]() ![]() Every application that uses Open Dialog Boxes will crash if you view\r\n the folder containing the PoC file in thumbnails view. Style\r\n Builder 1.0 (current version: 7) by going Preview -> Change Model ->\r\n evil.skp file.\r\n \r\n Another issue is the DLL files provided with the Google SketchUp Pro package.\r\n ThumbsUp.dll and xerces-c_2_6.dll mingles with the Thumbnail view from Microsoft.\r\n If you select the created \"SketchUp_PoC.skp\" file, explorer.exe instantly crashes\r\n and restarts. ![]() skp file by File -> Insert -> evil.skp file. LayOut 2.0 (current version: 7) suffers from the same\r\n issue when insering the. Same happens with the 2 other apps included in this Pro version of\r\n Google SketchUp. The issue is\r\n triggered when double-clicking the file or thru Open menu by just selecting\r\n the file. skp file format resulting in\r\n crash overflowing the memory stack, poping out the crash reporter tool from\r\n Google.\r\n \r\n EBX, ESI and EDI gets overwritten (depending of the offset). ()\r\n \r\n \r\n \r\n Product Web Page:\r\n \r\n \r\n \r\n \r\n \r\n \r\n Current Version:\r\n \r\n 7\r\n \r\n \r\n \r\n Summary:\r\n \r\n Google SketchUp Pro 7 is a suite of powerful features and\r\n applications for streamlining your professional 3D workflow.\r\n \r\n \r\n \r\n Description:\r\n \r\n Google SketchUp Pro 7.0 suffers from a memory corruption and stack based buffer\r\n overflow vulnerability. , "sourceHref": "", "sourceData": "/*\r\n \r\n \r\n Title:\r\n \r\n Google SketchUp Pro 7.0 Model File Handling Remote Stack Overflow PoC\r\n \r\n \r\n \r\n Vendor:\r\n \r\n Google Inc. ![]()
0 Comments
Leave a Reply. |