Monday, January 08, 2007

Opera JPEG processing - Heap corruption vulnerabilities

Another possible way to access the Wii as emerged.

IDefense is reporting a new Opera JPEG exploit.

There is a lot of info on how this all works along with sample code here.

This is way beyond what I will pretend to understand about programming, so i'm just posting it here in case someone else might find it interesting.

UPDATE: Some forum posters have been trying out these codes but so far have not been able to get it to affect the Wii. If you have any success crashing the Wii with this method please report your results.

5 comments:

  1. it looks to be windows only, and I would assume that that the wii is not running windows, but probably a linux.

    ReplyDelete
  2. http://img1.imagefuse.com/anon/11683628162.jpg
    http://img1.imagefuse.com/anon/11683628882.jpg
    http://img1.imagefuse.com/anon/11683629302.jpg

    The last three vulnerabilities in http://milw0rm.com/exploits/3101 works in wii opera

    ReplyDelete
  3. Confirmed, http://img1.imagefuse.com/anon/11683629302.jpg will restart Opera on the Wii and Windows.

    ReplyDelete
  4. Why opera stinks. Anyone figure out a way to put firefox on the wii? =P

    ReplyDelete