Headline
CVE-2021-33974: vulnerabilities-disclosures
Qihoo 360 (https://www.360.cn/) Qihoo 360 Safeguard (https://www.360.cn/) Qihoo 360 Chrome (https://browser.360.cn/ee/) is affected by: Buffer Overflow. The impact is: execute arbitrary code (remote). The component is: This is a set of vulnerabilities affecting popular software, and the installation packages correspond to versions "360 Safeguard(12.1.0.1004,12.1.0.1005,13.1.0.1001)" , "360 Total Security(10.8.0.1060,10.8.0.1213)", "360 Safe Browser & 360 Chrome(12. The attack vector is: On the browser vulnerability, just open a link to complete the vulnerability exploitation remotely; on the client software, you need to locally execute the vulnerability exploitation program, which of course can be achieved with the full chain of browser vulnerability. ¶¶ This is a set of the most serious vulnerabilities that exist on Qihoo 360’s PC client multiple popular software, remote vulnerabilities can be accomplished by opening a link to arbitrary code execution on both security browsers, in conjunction with the exploitation of local vulnerabilities that allow spyware to persist without being scanned to permanently reside on the target PC computer (because local vulnerabilities target Qihoo 360 company’s antivirus software kernel flaws); this set of remote and local vulnerabilities in perfect coordination, to achieve an information security fallacy, on Qihoo 360’s antivirus software vulnerability, not only can not be scanned out of the virus, but will help the virus persistently control the target computer, while Qihoo 360 claims to be a secure browser, which exists in the kernel vulnerability but help the composition of the remote vulnerability.(Security expert “Memory Corruptor” have reported this set of vulnerabilities to the corresponding vendor, all vulnerabilities have been fixed and the vendor rewarded thousands of dollars to this security expert)
*12.1.0.1004 LPE Critical 1000 USD
*12.1.0.1004 LPE High 600 USD
*12.1.0.1005 LPE High 500 USD
*12.1.0.1005 LPE Low 150 USD
_*12.1.0.1005 LPE Low 150 USD
_
*12.1.0.1006 LPE Medium 150 USD
*13.1.0.1001 RCE Medium 76.90 USD
- 360 Total Security
*10.8.0.1060 LPE High 300 USD
*10.8.0.1213 LPE with Cloud Drive High 538.35 USD
*10.8.0.1213 EOP with Sandbox Escape High 153.82 USD
- 360 Safe Browser & 360 Chrome (Chromium 86 kernel)
*12.0.1592.0 RCE with Sandbox Escape
*12.3.1611.0 RCE with Sandbox Escape
*13.0.2170.0 RCE with Sandbox Escape Critical 764.18 USD
1. Regarding the LPE/EOP vulnerability, the details of this type of vulnerability are that low-privilege users can write to the admin file arbitrarily without checking, which means that the user can take over the permission control of the admin file. This type of vulnerability requires the use of, for example, DLL proxy or service abuse. Executing commands on the system as a higher privileged user, I have attached the full exploit chain with the report.
2. Regarding the type confusion 0day vulnerability of the v8 engine in the browser RCE in its own Chromium kernel, and the remote 0day vulnerability and sandbox escape of flash.
3. Regarding the remote vulnerability in the software itself, it was a variant of the TCP/IP vulnerability at that time that bypassed its own system patch. I didn’t spend a lot of time constructing a stable shellcode for arbitrary file execution, so I only got moderate results.
**_The CVEs issued by Qihoo 360:_**
_CVE-2020-15722, CVE-2020-15723, CVE-2020-15724 etc…
_
CVE-2021-33970,CVE-2021-33971,CVE-2021-33972,CVE-2021-33973,CVE-2021-33974,CVE-2021-33975
_Exploit Fullchain Demo:
_
- Other software
Sandboxie-5.26 Sandbox Escape CVE-2018-18748
360Sandbox-3.5.0.1033 Sandbox Escape CVE-2018-18603
ProjectSend multiple RCE CVE-2016-10731 & CVE-2016-10732 & CVE-2016-10733 & CVE-2016-10734
Related news
Qihoo 360 (https://www.360.cn/) Qihoo 360 Safeguard (https://www.360.cn/) Qihoo 360 Total Security (http://www.360totalsecurity.com/) is affected by: Buffer Overflow. The impact is: execute arbitrary code (local). The component is: This is a set of vulnerabilities affecting popular software, "360 Safeguard(12.1.0.1004,12.1.0.1005,13.1.0.1001)" , "360 Total Security(10.8.0.1060,10.8.0.1213)", "360 Safe Browser & 360 Chrome(13.0.2170.0)". The attack vector is: On the browser vulnerability, just open a link to complete the vulnerability exploitation remotely; on the client software, you need to locally execute the vulnerability exploitation program, which of course can be achieved with the full chain of browser vulnerability. ¶¶ This is a set of the most serious vulnerabilities that exist on Qihoo 360's PC client a variety of popular software, remote vulnerabilities can be completed by opening a link to arbitrary code execution on both security browsers, with the use of local vulnerabilit...
Buffer Overflow vulnerability in Qihoo 360 Chrome v13.0.2170.0 allows attacker to escalate priveleges.
Buffer Overflow vulnerability in Qihoo 360 Total Security v10.8.0.1060 and v10.8.0.1213 allows attacker to escalate privileges.
Buffer Overflow vulnerability in Qihoo 360 Safe Browser v13.0.2170.0 allows attacker to escalate priveleges.