Analysis and Exploitation of MS07-017 Animated Cursor Handling Vulnerability
Jiang Jie-xin · Jisuanji gongcheng · 2008
Buffer overflow attack now becomes the main reason for the happening of security events.The MS07-017 animated cursor handling vulnerability presented by Microsoft is a stack overflow vulnerability rated as critical.This paper is mainly focused on the buffer overflow principle and exploitation on Win32 platform,and takes the MS07-017 animate cursor handling vulnerability as example to demonstrate the concepts.An in-depth analysis of this vulnerability is also presented in the paper to reveal how it occurs and a discussion of how to write the shellcode is available.A mal-formed animated cursor file generator is coded to prove the analysis.