QJ.NET | Videos | Forums | iPhone | MMORPG | Nintendo DS | Wii | PlayStation 3 | PSP | Xbox 360 | PC | Downloads | Contact Us
Forums | Gaming News | Videos | Downloads | Today's Posts | Mark Forums Read | Chat | FAQ | Members List | Contact

QJ.net Game Discussion - PSP, Xbox, Wii, PS3, PSP Homebrew, and PSP Guides

Go Back   QJ.net Game Discussion - PSP, Xbox, Wii, PS3, PSP Homebrew, and PSP Guides > Developers Corner > PSP Development, Hacks, and Homebrew > PSP Homebrew and Hacks Discussion
The above video goes away if you are a member and logged in, so log in now!

Possible jpeg overflow found.

This is a discussion on Possible jpeg overflow found. within the PSP Homebrew and Hacks Discussion forums, part of the PSP Development, Hacks, and Homebrew category; I was reading an interesting article the otherday concerning a jpeg overflow in the windows OS, since im on a ...

Reply
 
LinkBack Thread Tools
Old 11-10-2005, 05:18 AM   #1
 
AzureBlack's Avatar
 
Join Date: Jun 2005
Posts: 2,141
Trader Feedback: 0
Default Possible jpeg overflow found.

I was reading an interesting article the otherday concerning a jpeg overflow in the windows OS, since im on a mac, it wouldnt effect me, I took a look, its just an box with an X in it, and didnt seem like much...but it causes the PSP to act strangely...When the system tries to view it, it hangs for a couple of minutes (it eventually displays) Is there anything we can do with this?
Attached Files
File Type: zip crash.zip‎ (941 Bytes, 82 views)
__________________
[URL=http://imageshack.us][IMG]http://img130.imageshack.us/img130/8316/meeri2.jpg[/IMG][/URL]
To surrender to ignorance and call it God has always been premature, and it remains premature today.
-Isaac Asimov
AzureBlack is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 11-10-2005, 06:46 AM   #2

 
gracz54's Avatar
 
Join Date: Aug 2005
Posts: 1,700
Trader Feedback: 0
Default

if it displays it, it cant do anything i think
if it would close than yes
lol i cant even hexedit this thing, keeps getting me access denied
__________________
Spoiler for a surprise:
<3

Last edited by gracz54; 11-10-2005 at 06:49 AM..
gracz54 is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 11-10-2005, 07:06 AM   #3
 
AzureBlack's Avatar
 
Join Date: Jun 2005
Posts: 2,141
Trader Feedback: 0
Default

...what the hell does that mean? Iknow what access denied means, but i've never seen anyone get an access denied message from a jpeg.
__________________
[URL=http://imageshack.us][IMG]http://img130.imageshack.us/img130/8316/meeri2.jpg[/IMG][/URL]
To surrender to ignorance and call it God has always been premature, and it remains premature today.
-Isaac Asimov
AzureBlack is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 11-10-2005, 07:27 AM   #4

 
gracz54's Avatar
 
Join Date: Aug 2005
Posts: 1,700
Trader Feedback: 0
Default

strange, huh? oh well... too bad i wont see whats in there
__________________
Spoiler for a surprise:
<3
gracz54 is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 11-10-2005, 08:41 AM   #5
Developer
 
Calum's Avatar
 
Join Date: Oct 2005
Location: United Kingdom Occupation: PSP-Eater
Posts: 664
Trader Feedback: 0
Default

ofcourse u can :P for every file theres a source

http://seclists.org/lists/fulldisclo.../Sep/0834.html
__________________
[URL=http://csowned.com][img]http://img171.imageshack.us/img171/8030/csowned3xw.png[/img][/URL]
[IMG]http://img468.imageshack.us/img468/70/untitled17hy.png[/IMG]
Calum is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 11-10-2005, 08:49 AM   #6

 
gracz54's Avatar
 
Join Date: Aug 2005
Posts: 1,700
Trader Feedback: 0
Default

well that is the suck, because i dont have anything to compile it with
only have the pspsdk ;/
i would hex the compiled jpg and looked at that
__________________
Spoiler for a surprise:
<3
gracz54 is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 11-10-2005, 09:01 AM   #7
 
AzureBlack's Avatar
 
Join Date: Jun 2005
Posts: 2,141
Trader Feedback: 0
Default

hmmm...know of any compilers for the mac? I'm sure I could learn it "I would need a little bit of help along the way)
__________________
[URL=http://imageshack.us][IMG]http://img130.imageshack.us/img130/8316/meeri2.jpg[/IMG][/URL]
To surrender to ignorance and call it God has always been premature, and it remains premature today.
-Isaac Asimov
AzureBlack is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 11-10-2005, 09:37 AM   #8
 
Join Date: Oct 2005
Posts: 6
Trader Feedback: 0
Default

Somebody the a tried with 2.01?
gohan_kvc is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 11-10-2005, 09:45 AM   #9

 
gracz54's Avatar
 
Join Date: Aug 2005
Posts: 1,700
Trader Feedback: 0
Default

on the 2.01 its probably the same as everywhere
i tried it on 1.5, it just sits there for a moment and then displays a empty page with a photo icon in the middle
and when i try to run it the second time, it runs it smoothly the same time when i launch it
__________________
Spoiler for a surprise:
<3
gracz54 is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 11-10-2005, 10:09 AM   #10
 
AzureBlack's Avatar
 
Join Date: Jun 2005
Posts: 2,141
Trader Feedback: 0
Default

hmmm...so can nothing be done with this then?
__________________
[URL=http://imageshack.us][IMG]http://img130.imageshack.us/img130/8316/meeri2.jpg[/IMG][/URL]
To surrender to ignorance and call it God has always been premature, and it remains premature today.
-Isaac Asimov
AzureBlack is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 11-10-2005, 10:17 AM   #11

 
gracz54's Avatar
 
Join Date: Aug 2005
Posts: 1,700
Trader Feedback: 0
Default

i dont think there can be something done with that
but i can be wrong
__________________
Spoiler for a surprise:
<3
gracz54 is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 11-10-2005, 10:26 AM   #12
 
AzureBlack's Avatar
 
Join Date: Jun 2005
Posts: 2,141
Trader Feedback: 0
Default

I had another question, If you replace the icon for an update, does it corrupt the file?
__________________
[URL=http://imageshack.us][IMG]http://img130.imageshack.us/img130/8316/meeri2.jpg[/IMG][/URL]
To surrender to ignorance and call it God has always been premature, and it remains premature today.
-Isaac Asimov
AzureBlack is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 11-10-2005, 10:33 AM   #13

 
gracz54's Avatar
 
Join Date: Aug 2005
Posts: 1,700
Trader Feedback: 0
Default

you cant replace it with an icon of an update
they are png's, this is a jpg
__________________
Spoiler for a surprise:
<3
gracz54 is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 11-10-2005, 10:42 AM   #14
 
AzureBlack's Avatar
 
Join Date: Jun 2005
Posts: 2,141
Trader Feedback: 0
Default

nonono, this is somewhat unrelated. I'm just saying if you replace the icon0.png of an update with a different icon, does it get corrupted?
__________________
[URL=http://imageshack.us][IMG]http://img130.imageshack.us/img130/8316/meeri2.jpg[/IMG][/URL]
To surrender to ignorance and call it God has always been premature, and it remains premature today.
-Isaac Asimov
AzureBlack is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 11-10-2005, 11:00 AM   #15

 
gracz54's Avatar
 
Join Date: Aug 2005
Posts: 1,700
Trader Feedback: 0
Default

yeah, it launches and says that the update is corrupted
__________________
Spoiler for a surprise:
<3

Last edited by gracz54; 11-10-2005 at 11:06 AM..
gracz54 is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 11-10-2005, 11:01 AM   #16
 
AzureBlack's Avatar
 
Join Date: Jun 2005
Posts: 2,141
Trader Feedback: 0
Default

Well im getting offline, going to see the gf, be back later on.
__________________
[URL=http://imageshack.us][IMG]http://img130.imageshack.us/img130/8316/meeri2.jpg[/IMG][/URL]
To surrender to ignorance and call it God has always been premature, and it remains premature today.
-Isaac Asimov
AzureBlack is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 11-10-2005, 01:38 PM   #17
 
Join Date: Jul 2005
Posts: 942
Trader Feedback: 0
Default

Well unless it causes a buffer overflow then you won't be able to do much with it.
__________________
[CENTER]I think wii need a better name[/CENTER]
Ibanez32 is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 11-10-2005, 03:37 PM   #18
 
AzureBlack's Avatar
 
Join Date: Jun 2005
Posts: 2,141
Trader Feedback: 0
Default

I understand that, but there HAS been things such as a png overflow before, meaning the update itslef can be the reason we have an exploit on our hands...but I guess that idea is gone now...wait, Some icons still display in 2.0, most of them actually, is there anyway to use them to our advantage? Does anyone know whether or not you can see the game icons in 2.1 or 2.5?
__________________
[URL=http://imageshack.us][IMG]http://img130.imageshack.us/img130/8316/meeri2.jpg[/IMG][/URL]
To surrender to ignorance and call it God has always been premature, and it remains premature today.
-Isaac Asimov
AzureBlack is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 11-10-2005, 04:52 PM   #19

Rock Star
 

 
Join Date: Aug 2005
Location: CT| FW: 4.01 M33-2
Posts: 11,844
Trader Feedback: 0
Default

you can see the icons in 2.5
__________________

TeamOverload is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 11-10-2005, 05:03 PM   #20
 
st.jimmy's Avatar
 
Join Date: Aug 2005
Location: MD | Fries: 13
Posts: 1,019
Trader Feedback: 0
Default

Quote:
Originally Posted by AzureBlack
nonono, this is somewhat unrelated. I'm just saying if you replace the icon0.png of an update with a different icon, does it get corrupted?
i think that someone should try replacing the update png with a regular game png. There is a chance. Not saying it WILL work, but the chances are there.
st.jimmy is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 11-10-2005, 05:06 PM   #21

Rock Star
 

 
Join Date: Aug 2005
Location: CT| FW: 4.01 M33-2
Posts: 11,844
Trader Feedback: 0
Default

i must have missed it, but y does it matter if you change the icon?
__________________

TeamOverload is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 11-10-2005, 05:07 PM   #22
 
st.jimmy's Avatar
 
Join Date: Aug 2005
Location: MD | Fries: 13
Posts: 1,019
Trader Feedback: 0
Default

Quote:
Originally Posted by TeamOverload
i must have missed it, but y does it matter if you change the icon?
*cough*hex edit by sony*cough*
st.jimmy is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 11-10-2005, 11:35 PM   #23

 
gracz54's Avatar
 
Join Date: Aug 2005
Posts: 1,700
Trader Feedback: 0
Default

if you change the icon, then the update is corrupted when you launch it
__________________
Spoiler for a surprise:
<3
gracz54 is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 11-11-2005, 12:15 AM   #24
Aussie!
 
Hmboy's Avatar
 
Join Date: Jul 2005
Location: Perth, Australia.
Posts: 371
Trader Feedback: 0
Default

They wont make the same mistake twice.. especially regarding 'photo exploits'
__________________
[IMG]http://etc.sorrowind.net/hmboypsix.jpg[/IMG]
[COLOR=SlateGray][SIZE=0]Dont ask.[/SIZE][/COLOR]
Hmboy is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 11-11-2005, 01:43 AM   #25

 
gracz54's Avatar
 
Join Date: Aug 2005
Posts: 1,700
Trader Feedback: 0
Default

yeah
so where could we find an exploit? web browser? maybe, but i wouldnt get your hopes up
what else is there?
__________________
Spoiler for a surprise:
<3
gracz54 is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 11-11-2005, 06:00 PM   #26
 
Tonite..You_Die's Avatar
 
Join Date: Aug 2005
Location: Behind Your Mom. Posts: 9,993
Posts: 201
Trader Feedback: 0
Talking

the jpeg is a very smal pic of a X ...let ur psp load it...takes about 4 mins then u see it
Tonite..You_Die is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 11-11-2005, 06:18 PM   #27

...
 
xigency's Avatar
 
Join Date: Oct 2005
Location: The US of A Hombrew: Quak Arena Projects: RIFT
Posts: 381
Trader Feedback: 0
Default

Quote:
Originally Posted by Hmboy
They wont make the same mistake twice.. especially regarding 'photo exploits'
well they dont seem to have changed anything except libtif so any other possible photo exploits from 2.0 would probably still work, like jpg, gif, or bmp
__________________
...
xigency is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 11-11-2005, 06:26 PM   #28
 
makarman's Avatar
 
Join Date: Jun 2005
Location: Candy Land
Posts: 1,582
Trader Feedback: 0
Default

Well there is a buffer overflow in PNG and JPG, we just never tried doing anything with them on the PSP.
But the cool thing about a PNG or JPG overflow is that Sony couldn't stop it, since the WipEout browser has its own JPG and PNG libraries.
__________________
[CENTER]
[url=http://www.indepthhacks.info/forums/index.php?][COLOR=DarkSlateGray][SIZE="3"][b]The Banned Club[/SIZE][/COLOR][/url] - join or die[/b]
[url=http://www.blingo.com/friends?ref=3DxJIw6buw61_I3ZGGrrYqoaNz0][COLOR=DarkSlateGray][SIZE="3"][b]Blingo[/SIZE][/COLOR][/url] - win stuff while searching Google[/b]
[/CENTER]
makarman is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 11-14-2005, 11:30 PM   #29
 
lolnewb's Avatar
 
Join Date: Aug 2005
Posts: 38
Trader Feedback: 0
Default

y does my antivirus say its a virus?
lolnewb is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 11-15-2005, 01:45 PM   #30
PsP Developer
 
pspmad's Avatar
 
Join Date: Sep 2005
Posts: 131
Trader Feedback: 0
Default

yeah mine frozzy for a cople of seconds and returns to normal well i got to see wht
make the PNG lock up for a couple seconds it is looking for a directory but cant find it
so it just come back from the lock up.......If im wrong then just post

to read file just open in Notepad
pspmad is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Reply

Tags
found , jpeg , overflow

Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off



All times are GMT -8. The time now is 10:47 PM.



Use of this Web site constitutes acceptance of the TERMS & CONDITIONS and PRIVACY POLICY
Copyright © 2009, QJ.NET. All Rights Reserved.
Contact Us