Digital Data Communications RtspVaPgCtrl ActiveX Control Buffer Overflow Vulnerability
BID:27337
Info
Digital Data Communications RtspVaPgCtrl ActiveX Control Buffer Overflow Vulnerability
| Bugtraq ID: | 27337 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2008-0380 |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 17 2008 12:00AM |
| Updated: | May 07 2015 05:33PM |
| Credit: | rgod discovered this vulnerability. |
| Vulnerable: |
Digital Data Communications RtspVapgDecoder.dll 1.1.0.29 |
| Not Vulnerable: | |
Discussion
Digital Data Communications RtspVaPgCtrl ActiveX Control Buffer Overflow Vulnerability
Digital Data Communications RtspVaPgCtrl ActiveX control is prone to a buffer-overflow vulnerability because the application fails to perform adequate boundary checks on user-supplied data.
Successfully exploiting this issue allows remote attackers to execute arbitrary code in the context of the application using the ActiveX control (typically Internet Explorer). Failed exploit attempts likely result in denial-of-service conditions.
This issue affects 'RtspVapgDecoder.dll' 1.1.0.29; other versions may also be vulnerable.
Digital Data Communications RtspVaPgCtrl ActiveX control is prone to a buffer-overflow vulnerability because the application fails to perform adequate boundary checks on user-supplied data.
Successfully exploiting this issue allows remote attackers to execute arbitrary code in the context of the application using the ActiveX control (typically Internet Explorer). Failed exploit attempts likely result in denial-of-service conditions.
This issue affects 'RtspVapgDecoder.dll' 1.1.0.29; other versions may also be vulnerable.
Exploit / POC
Solution / Fix
Digital Data Communications RtspVaPgCtrl ActiveX Control Buffer Overflow Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
Digital Data Communications RtspVaPgCtrl ActiveX Control Buffer Overflow Vulnerability
References:
References:
- Digital Data Communications Homepage (Digital Data Communications)
- Microsoft Knowledge Base Article 240797 (Microsoft)