Linksys WVC54GC 'NetCamPlayerWeb11gv2.ocx' ActiveX Control Buffer Overflow Vulnerability
BID:32665
Info
Linksys WVC54GC 'NetCamPlayerWeb11gv2.ocx' ActiveX Control Buffer Overflow Vulnerability
| Bugtraq ID: | 32665 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2008-4391 |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 05 2008 12:00AM |
| Updated: | Dec 08 2008 05:31PM |
| Credit: | Greg Linares of eEye |
| Vulnerable: |
Linksys WVC54GC 0 |
| Not Vulnerable: |
Linksys WVC54GC 1.25 |
Discussion
Linksys WVC54GC 'NetCamPlayerWeb11gv2.ocx' ActiveX Control Buffer Overflow Vulnerability
Linksys WVC54GC NetCamPlayerWeb11gv2 Agent ActiveX Control is prone to a buffer-overflow vulnerability because the application fails to adequately check boundaries on user-supplied input.
An attacker can exploit this issue to execute arbitrary code in the context of the application using the ActiveX control (typically Internet Explorer). Failed attacks will likely cause denial-of-service conditions.
WVC53GC with firmware versions prior to 1.25 that include the ActiveX control are vulnerable.
Linksys WVC54GC NetCamPlayerWeb11gv2 Agent ActiveX Control is prone to a buffer-overflow vulnerability because the application fails to adequately check boundaries on user-supplied input.
An attacker can exploit this issue to execute arbitrary code in the context of the application using the ActiveX control (typically Internet Explorer). Failed attacks will likely cause denial-of-service conditions.
WVC53GC with firmware versions prior to 1.25 that include the ActiveX control are vulnerable.
Exploit / POC
Linksys WVC54GC 'NetCamPlayerWeb11gv2.ocx' ActiveX Control Buffer Overflow Vulnerability
A working commercial exploit is available through VUPEN Security - Exploit and PoCs Service. This exploit is not otherwise publicly available or known to be circulating in the wild..
A working commercial exploit is available through VUPEN Security - Exploit and PoCs Service. This exploit is not otherwise publicly available or known to be circulating in the wild..
Solution / Fix
Linksys WVC54GC 'NetCamPlayerWeb11gv2.ocx' ActiveX Control Buffer Overflow Vulnerability
Solution:
The vendor released an update to address this issue. Please see the references for more information.
Linksys WVC54GC 0
Solution:
The vendor released an update to address this issue. Please see the references for more information.
Linksys WVC54GC 0
References
Linksys WVC54GC 'NetCamPlayerWeb11gv2.ocx' ActiveX Control Buffer Overflow Vulnerability
References:
References:
- Firmware 1.25 Releae Notes (Linksys)
- Linksys Homepage (Linksys)
- Vulnerability Note VU#639345 (US-CERT)