Aurigma Image Uploader ActiveX Controls 'ExtractIptc/ExtractExif' Buffer Overflow Vulnerabilities
BID:27577
Info
Aurigma Image Uploader ActiveX Controls 'ExtractIptc/ExtractExif' Buffer Overflow Vulnerabilities
| Bugtraq ID: | 27577 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2008-0660 |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 03 2008 12:00AM |
| Updated: | May 07 2015 05:33PM |
| Credit: | Elazar Broad discovered these vulnerabilities. |
| Vulnerable: |
Aurigma ImageUploader 5.0.10 .0 Aurigma ImageUploader 4.6.17 .0 Aurigma ImageUploader 4.5.126 .0 Aurigma ImageUploader 4.5.70 |
| Not Vulnerable: | |
Discussion
Aurigma Image Uploader ActiveX Controls 'ExtractIptc/ExtractExif' Buffer Overflow Vulnerabilities
Aurigma Image Uploader ActiveX controls are prone to multiple buffer-overflow vulnerabilities because they fail to perform adequate boundary checks on user-supplied data.
Successfully exploiting these issues allows remote attackers to execute arbitrary code in the context of the application using the ActiveX controls (typically Internet Explorer). Failed exploit attempts will result in denial-of-service conditions.
The issues affect the following versions:
ImageUploader4 4.5.70.0, 4.5.126.0, and 4.6.17.0
ImageUploader5 5.0.10.0
Other versions may also be vulnerable.
Aurigma Image Uploader ActiveX controls are prone to multiple buffer-overflow vulnerabilities because they fail to perform adequate boundary checks on user-supplied data.
Successfully exploiting these issues allows remote attackers to execute arbitrary code in the context of the application using the ActiveX controls (typically Internet Explorer). Failed exploit attempts will result in denial-of-service conditions.
The issues affect the following versions:
ImageUploader4 4.5.70.0, 4.5.126.0, and 4.6.17.0
ImageUploader5 5.0.10.0
Other versions may also be vulnerable.
Exploit / POC
Aurigma Image Uploader ActiveX Controls 'ExtractIptc/ExtractExif' Buffer Overflow Vulnerabilities
UPDATE (September 17, 2008): Symantec has observed active exploit attempts of this issue in the wild.
The following exploit is available:
UPDATE (September 17, 2008): Symantec has observed active exploit attempts of this issue in the wild.
The following exploit is available:
Solution / Fix
Aurigma Image Uploader ActiveX Controls 'ExtractIptc/ExtractExif' Buffer Overflow Vulnerabilities
Solution:
The vendor has released an update to address this issue. Please see the referenced advisories for more information.
Solution:
The vendor has released an update to address this issue. Please see the referenced advisories for more information.
References
Aurigma Image Uploader ActiveX Controls 'ExtractIptc/ExtractExif' Buffer Overflow Vulnerabilities
References:
References: