Reported September 18, 2003, by Bahaa Naamneh.
WideChapter Internet Browser for Windows
A vulnerability in WideChapter Internet Browser for Windows can result in the execution of arbitrary code on the vulnerable system. By initiating a long HTTP request, an attacker can cause a buffer overflow in WideChapter. This overflow permits modification of the Execution Instruction Point, which lets the attacker execute arbitrary code.
The discoverer posted the following code as proof of concept:
An exploit for Windows XP Home has created and is available for download from: http://www.elitehaven.net/wcexploit.zip
WideChapter has been notified.
Discovered by Bahaa Naamneh.