HP Info Center HPInfoDLL.DLL ActiveX Control Multiple Arbitrary Code Execution Vulnerabilities
BID:26823
Info
HP Info Center HPInfoDLL.DLL ActiveX Control Multiple Arbitrary Code Execution Vulnerabilities
| Bugtraq ID: | 26823 |
| Class: | Design Error |
| CVE: |
CVE-2007-6331 CVE-2007-6332 CVE-2007-6333 |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 11 2007 12:00AM |
| Updated: | Apr 18 2008 12:28AM |
| Credit: | porkythepig <[email protected]> is credited with the discovery of these vulnerabilities. |
| Vulnerable: |
HP Info Center 1.0.1.1 |
| Not Vulnerable: | |
Discussion
HP Info Center HPInfoDLL.DLL ActiveX Control Multiple Arbitrary Code Execution Vulnerabilities
HP Info Center ActiveX control is prone to multiple vulnerabilities that attackers can exploit to run arbitrary code. The issues stem from insecure methods used within 'HPInfoDLL.dll'.
An attacker can exploit these issues by enticing an unsuspecting victim to visit a malicious HTML page.
Successfully exploiting these issues allows remote attackers to edit registry key information and execute arbitrary code in the context of the application using the ActiveX control (typically Internet Explorer). Failed exploit attempts will likely result in denial-of-service conditions.
HP Info Center 1.0.1.1 with 'HPInfoDLL.dll' ActiveX control 1.0 is vulnerable; other versions may also be affected. Note that multiple HP laptop models ship with this software.
HP Info Center ActiveX control is prone to multiple vulnerabilities that attackers can exploit to run arbitrary code. The issues stem from insecure methods used within 'HPInfoDLL.dll'.
An attacker can exploit these issues by enticing an unsuspecting victim to visit a malicious HTML page.
Successfully exploiting these issues allows remote attackers to edit registry key information and execute arbitrary code in the context of the application using the ActiveX control (typically Internet Explorer). Failed exploit attempts will likely result in denial-of-service conditions.
HP Info Center 1.0.1.1 with 'HPInfoDLL.dll' ActiveX control 1.0 is vulnerable; other versions may also be affected. Note that multiple HP laptop models ship with this software.
Exploit / POC
HP Info Center HPInfoDLL.DLL ActiveX Control Multiple Arbitrary Code Execution Vulnerabilities
Attackers can exploit these issues with a browser.
The following proof-of-concept examples are available:
Attackers can exploit these issues with a browser.
The following proof-of-concept examples are available:
Solution / Fix
HP Info Center HPInfoDLL.DLL ActiveX Control Multiple Arbitrary Code Execution Vulnerabilities
Solution:
The vendor has released an advisory and a fix. Please see the references for more information.
Solution:
The vendor has released an advisory and a fix. Please see the references for more information.
References
HP Info Center HPInfoDLL.DLL ActiveX Control Multiple Arbitrary Code Execution Vulnerabilities
References:
References:
- Micro News Homepage (phptoys)
- Microsoft Knowledge Base Article 240797 (Microsoft)
- [security bulletin] HPSBGN02298 SSRT071502 rev.2 - HP Quick Launch Button (QLB) ([email protected])
- HP notebooks remote code execution vulnerability (multiple series) ([email protected])
- HP Quick Launch Buttons Critical Security Update (HP)