Full title: ImageMagick 6.8.8-4 - Local Buffer Overflow (SEH) Category: local exploits Platform: windows I saw the notice for this CVE today but there was no known published expoits so # I figured I'd put together this quick POC. Note, all app modules for the tested # version were compiled with safeSEH so my use of an OS module may require adjustment # of the offsets. There also appears to be several bad chars that fail the sploit. # For this POC I only generate a basic messagebox using FatalAppExit(). It may take # some work to get it to do more. # 0day.today @ http://0day.today/