[] NeoSense

Hotfoon Dialer 4.0 - Buffer Overflow (PoC)

Author: S G Masood
type: dos
platform: multiple
port: 
date_added: 2002-11-11 
date_updated: 2012-10-16 
verified: 1 
codes: CVE-2002-2385;OSVDB-60162 
tags: 
aliases:  
screenshot_url:  
application_url: 

source: https://www.securityfocus.com/bid/6156/info

A buffer overflow vulnerability has been reported for the Hotfoon dialer. The vulnerability exists in a text input field for dialing telephone numbers. Reportedly, Hotfoon4.exe does not adequately perform boundary checks on this field.

It is possible to crash the service and execute code.

Voice:aaaaaa.........76 a's