CVE-2008-0959
Summary
| CVE | CVE-2008-0959 |
|---|---|
| State | PUBLISHED |
| Assigner | certcc |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2008-05-29 16:32:00 UTC |
| Updated | 2026-04-23 00:35:47 UTC |
| Description | Multiple stack-based buffer overflows in the Online Media Technologies NCTSoft NCTAudioInformation2 ActiveX control in NCTAudioInformation2.dll, as used in (1) Power Audio CD Grabber 1.0, (2) Power Audio CD Burner 1.02, (3) CinematicMP3 1.4.0.0, (4) Alive MP3 WAV Converter 3.9.3.2, and possibly other products, allow remote attackers to execute arbitrary code via unspecified vectors. |
Risk And Classification
CVSS v2.0 Breakdown
Access Vector
NetworkAccess Complexity
MediumAuthentication
NoneConfidentiality
PartialIntegrity
PartialAvailability
PartialAV:N/AC:M/Au:N/C:P/I:P/A:P
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Alivemedia | Alive Mp3 Wav Converter | 3.9.3.2 | All | All | All |
| Application | Online Media Technologies | Nctaudioeditor Activex Control | All | All | All | All |
| Application | Online Media Technologies | Nctaudiostudio Activex Control | All | All | All | All |
| Application | Orion Studios | Cinematicmp3 | 1.4.0.0 | All | All | All |
| Application | Ussun | Power Audio Cd Burner | 1.02 | All | All | All |
| Application | Ussun | Power Audio Cd Grabber | 1.0 | All | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| VU#669265 - Online Media Technologies NCTSoft NCTAudioInformation2 ActiveX stack buffer overflows | af854a3a-2127-422b-91ae-364da2661108 | www.kb.cert.org | US Government Resource |
| Alive MP3 WAV Converter NCTAudioInformation2.dll ActiveX Control Buffer Overflow - Secunia Advisories - Vulnerability Intelligence - Secunia.com | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | |
| Audio Editor Plus NCTAudioInformation2.dll ActiveX Control Buffer Overflow - Advisories - Secunia | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | |
| Powerful Audio Tool NCTAudioInformation2.dll ActiveX Control Buffer Overflow - Advisories - Secunia | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | |
| Power Audio CD Burner NCTAudioInformation2 ActiveX Control Buffer Overflow - Secunia Advisories - Vulnerability Intelligence - Secunia.com | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | |
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH | af854a3a-2127-422b-91ae-364da2661108 | www.vupen.com | |
| 4U WMA MP3 Converter NCTAudioInformation2.dll ActiveX Control Buffer Overflow - Advisories - Community | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | |
| Total Audio Recorder and Editor NCTSoft ActiveX Controls Buffer Overflow Vulnerabilities - Advisories - Secunia | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | |
| Easy Audio Redactor NCTSoft ActiveX Controls Buffer Overflow Vulnerabilities - Advisories - Secunia | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | |
| Crystal MP3 Recorder NCTAudioInformation2.dll ActiveX Control Buffer Overflow - Advisories - Secunia | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | |
| CinematicMP3 NCTAudioInformation2 ActiveX Control Buffer Overflow - Advisories - Secunia | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | |
| IBM X-Force Exchange | af854a3a-2127-422b-91ae-364da2661108 | exchange.xforce.ibmcloud.com | |
| My Phone Files Media Studio NCTSoft ActiveX Controls Buffer Overflow Vulnerabilities - Secunia Advisories - Vulnerability Intelligence - Secunia.com | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | |
| Power Audio CD Grabber NCTAudioInformation2 ActiveX Control Buffer Overflow - Advisories - Secunia | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | |
| Total Audio Capture NCTAudioInformation2.dll ActiveX Control Buffer Overflow - Advisories - Secunia | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | |
| NCTSoft Products NCTAudioInformation2 ActiveX Control Buffer Overflows - Secunia Advisories - Vulnerability Intelligence - Secunia.com | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.