PSP3D Left Header
PSP3D Header Right
PSP3D Logo CraveOnline Logo
Help the PSP 3D community grow!
Vote for us below:


Vote on the PSP Top 200
PSP Top 200 - Games, Videos, Wallpapers, Files, Hacks, Homebrew

Homebrew/Hacking - Discuss the latest available homebrew applications and games.

Welcome to PSP3D.com - Sony PlayStation Portable News, Homebrew, Hacks, Reviews, Videos, Mods, Forums!

You are currently viewing our website as a guest, which gives you limited access to reply and interact to discussions and other members. By joining our free community, you will be able to post topics in the forums, communicate privately with other members, vote in polls, and access many other special features.

Registration is fast, simple, and absolutely free so join our community today!

Go Back PSP3D.com - Sony PlayStation Portable News, Homebrew, Hacks, Reviews, Videos, Mods, Forums > PSP Forums > Homebrew/Hacking

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 02-22-2006, 07:39 AM
HappySlapster HappySlapster is offline
Member
 
Join Date: Jan 2006
Location: Midlands UK
Posts: 52
Points: 0.24
Donate
Lightbulb whats "LibTIFF TIFFOpen Buffer Overflow Vulnerability"

tried reading up on this and i could not understand whever it could be appiled to 2.01+ or is this basicly the tiff overflow on 2.0

what i read up on

"Description:
Tavis Ormandy has reported a vulnerability in libTIFF, which potentially can be exploited by malicious people to compromise a vulnerable system.

The vulnerability is caused due to a boundary error and can be exploited to cause a buffer overflow via a specially crafted TIFF image containing a malformed BitsPerSample tag.

Successful exploitation may allow execution of arbitrary code, if a malicious TIFF image is opened in an application linked against the vulnerable library."

so if this is the 2.0 tiff exploit and sony have patched it?

if so HOW did thet patch it??

did they change what libTIFF was used or am i misunderstanding.

and if we find what libtiff is being used we can over flow it right? ....do we allready know and its been patched

sorry if this seem's stupid or just noodish

i aint asking will the tiff exploit will work on 2.01+ i juat want an understanding on how thing work.

i love brainstorming so many ideas most not pratical some just shit but i must have more info before i start playing


22 and can't even string a decent sentence and am shit at spelling emmm i suck at grammer

my quote " STAY AT SCHOOL KIDS!! "

Last edited by HappySlapster : 02-22-2006 at 07:42 AM.
Reply With Quote
  #2 (permalink)  
Old 02-22-2006, 07:45 AM
kernal32's Avatar
kernal32 kernal32 is offline
Senior Member
 
Join Date: Dec 2005
Location: Australia
Posts: 1,771
Points: 1.36
Donate
nope cant be applied to 2.01+ sorry

got fixed. thats what the 2.01 update was.
__________________
PSP 2.01 Owner
PSP 1.5 Owner

Hombrew Guide, All Versions - Here
MPH Gameloader Guide - Here
Firmware Dump Guide - Here
2.0 Games on 1.5 Guide - Here
2.01 & Above Downdgrade - Here
Reply With Quote
  #3 (permalink)  
Old 02-22-2006, 07:54 AM
HappySlapster HappySlapster is offline
Member
 
Join Date: Jan 2006
Location: Midlands UK
Posts: 52
Points: 0.24
Donate
duh thats not what i asked i wona know HOW they fixed it, did they make some sota
patch that did not allow the tiff to run or did they just chage the libtiff to a diff version or what . saying " nope cant be applied to 2.01+ sorry " does not say a thing i know that allready ....... god sake .... right heres my Q's

1) was this what was used in 2.0 for the exploit?
2) is this what they patched?
3) how?
Reply With Quote
  #4 (permalink)  
Old 02-22-2006, 08:02 AM
train2335 train2335 is offline
Highly Respected Member
 
Join Date: Nov 2005
Posts: 241
Points: 0.81
Donate
I saw this in the pspupdates forums. Well I don't think it will work. I have tried MANY MANY computer exploits and buffer overflows back in the day on the PSP. I couldn't get any to work. But we will see what others have to say!
Reply With Quote
  #5 (permalink)  
Old 02-22-2006, 08:05 AM
kernal32's Avatar
kernal32 kernal32 is offline
Senior Member
 
Join Date: Dec 2005
Location: Australia
Posts: 1,771
Points: 1.36
Donate
this is what was used in the 2.0 exploit
they stopped the buffer overflow from being able to run unsigned code
via updates to the library/patched the hole which the code was getting thru

geebuz, not that it matters. its not like your going to magically find a way to enable it again, trust me. start searching for another overflow.
__________________
PSP 2.01 Owner
PSP 1.5 Owner

Hombrew Guide, All Versions - Here
MPH Gameloader Guide - Here
Firmware Dump Guide - Here
2.0 Games on 1.5 Guide - Here
2.01 & Above Downdgrade - Here
Reply With Quote
  #6 (permalink)  
Old 02-22-2006, 08:09 AM
HappySlapster HappySlapster is offline
Member
 
Join Date: Jan 2006
Location: Midlands UK
Posts: 52
Points: 0.24
Donate
Quote:
Originally Posted by kernal32
this is what was used in the 2.0 exploit
they stopped the buffer overflow from being able to run unsigned code
via updates to the library/patched the hole which the code was getting thru

geebuz, not that it matters. its not like your going to magically find a way to enable it again, trust me. start searching for another overflow.
cheers mate thats all i needed to know, but one more thing
what lib do they use for psp once i know that i understand the tiff abit more
Reply With Quote
Reply

« DOOM on 2.6 | ScummVM Bugs »



Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On

Points Per Thread View: 0.00
Points Per Thread: 1.00
Points Per Reply: 0.10





Crave Partner Sites: CraveOnline.com | DVDFile.com | PSP3D.com | ComingSoon.net | SuperHeroHype.com | RedBalcony.com | ActionTrip.com | CraveLyrics.com
Soundtrack.net | CraveFix.com | SpikedHumor.com | RPGamer.com | TattooNow.com | ImpactWrestling.com | SeekLyrics.com | PedalBMX.com | WildKO.com
vidKing.com | StrategyInformer.com | HHdb.com | RapLeagues.com | HipHop-Lyrics.com | Cravecocktails.com | ThePhatPhree.com | RideJudge.com | HottieSpots.com

ShopTapNham Shop Online Powered by Custom vB Version 5.1.0 for Crave Online Media, LLC.
Copyright © 2000 - 2007, Jelsoft Enterprises Ltd. and PSP3D.com.
LinkBacks Enabled by vBSEO 3.0.0 RC8

All times are GMT -4. The time now is 09:40 PM.
ShopTapNham Footer Right