Fujitsu Systemcast Wizard Lite Registry Tool Buffer Overflow Vulnerability
BID:33644
Info
Fujitsu Systemcast Wizard Lite Registry Tool Buffer Overflow Vulnerability
| Bugtraq ID: | 33644 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2009-0264 |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 19 2009 12:00AM |
| Updated: | Feb 06 2009 09:49PM |
| Credit: | This issue was disclosed by the vendor. |
| Vulnerable: |
Fujitsu Systemcast Wizard Lite 2.0a Fujitsu Systemcast Wizard Lite 2.0 Fujitsu Systemcast Wizard Lite 1.9 Fujitsu Systemcast Wizard Lite 1.8a Fujitsu Systemcast Wizard Lite 1.8 Fujitsu Systemcast Wizard Lite 1.7 |
| Not Vulnerable: | |
Discussion
Fujitsu Systemcast Wizard Lite Registry Tool Buffer Overflow Vulnerability
Fujitsu Systemcast Wizard Lite is prone to a buffer-overflow vulnerability because the software fails to perform adequate boundary checks on user-supplied input.
Attackers can leverage this issue to execute arbitrary code within the context of the vulnerable application. Successful exploits will compromise the application and the underlying computer. Failed attacks will cause denial-of-service conditions.
Systemcast Wizard Lite 2.0A and prior are vulnerable.
Fujitsu Systemcast Wizard Lite is prone to a buffer-overflow vulnerability because the software fails to perform adequate boundary checks on user-supplied input.
Attackers can leverage this issue to execute arbitrary code within the context of the vulnerable application. Successful exploits will compromise the application and the underlying computer. Failed attacks will cause denial-of-service conditions.
Systemcast Wizard Lite 2.0A and prior are vulnerable.
Exploit / POC
Fujitsu Systemcast Wizard Lite Registry Tool Buffer Overflow Vulnerability
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Fujitsu Systemcast Wizard Lite Registry Tool Buffer Overflow Vulnerability
Solution:
Vendor patches are available; please see the references for more information.
Fujitsu Systemcast Wizard Lite 1.8a
Fujitsu Systemcast Wizard Lite 1.7
Fujitsu Systemcast Wizard Lite 2.0a
Fujitsu Systemcast Wizard Lite 1.8
Fujitsu Systemcast Wizard Lite 1.9
Fujitsu Systemcast Wizard Lite 2.0
Solution:
Vendor patches are available; please see the references for more information.
Fujitsu Systemcast Wizard Lite 1.8a
-
Fujitsu TKH0139.exe
http://www.fujitsu.com/downloads/PRMQST/documents/TKH0139.exe
Fujitsu Systemcast Wizard Lite 1.7
-
Fujitsu TKF0139.exe
http://www.fujitsu.com/downloads/PRMQST/documents/TKF0139.exe
Fujitsu Systemcast Wizard Lite 2.0a
-
Fujitsu TKL0139.exe
http://www.fujitsu.com/downloads/PRMQST/documents/TKL0139.exe
Fujitsu Systemcast Wizard Lite 1.8
-
Fujitsu TKG0139.exe
http://www.fujitsu.com/downloads/PRMQST/documents/TKG0139.exe
Fujitsu Systemcast Wizard Lite 1.9
-
Fujitsu TKJ0139.exe
http://www.fujitsu.com/downloads/PRMQST/documents/TKJ0139.exe
Fujitsu Systemcast Wizard Lite 2.0
-
Fujitsu TKK0139.exe
http://www.fujitsu.com/downloads/PRMQST/documents/TKK0139.exe
References
Fujitsu Systemcast Wizard Lite Registry Tool Buffer Overflow Vulnerability
References:
References:
- Fujitsu Homepage (Fujitsu)
- PRIMEQUEST Tools (Fujitsu)
- Systemcast Wizard Lite Patch (Fujitsu)