A few days ago, one of my friends (mr_me) pointed me to an application that appeared to be acting somewhat “buggy” while processing “specifically” crafted zip files. After playing with the zip file structure for a while (thanks again, mr_me, for documenting the zip file structure), I found a way to make the application crash and overwrite a exception handler structure. In this article, I will exp
![QuickZip Stack BOF 0day: a box of chocolates](https://cdn-ak-scissors.b.st-hatena.com/image/square/f6962366f2339a5f6be87afaf6d99089f1efc695/height=288;version=1;width=512/https%3A%2F%2Fwww.offsec.com%2Fwp-content%2Fuploads%2F2010%2F03%2Foffsec-quickzip-798x284.png)