Multiple Vendor Hummingbird STR Service Buffer Overflow Vulnerability
BID:36868
Info
Multiple Vendor Hummingbird STR Service Buffer Overflow Vulnerability
| Bugtraq ID: | 36868 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 28 2009 12:00AM |
| Updated: | Oct 29 2009 07:27PM |
| Credit: | Stephen Fewer |
| Vulnerable: |
OpenText Search Server 6.1 OpenText Search Server 6.0 EMC Documentum eRoom 7.4.1 |
| Not Vulnerable: |
EMC Documentum eRoom 7.4.2 |
Discussion
Multiple Vendor Hummingbird STR Service Buffer Overflow Vulnerability
The Hummingbird STR service ('STRsvc.exe') used in products by multiple vendors is prone to a buffer-overflow vulnerability because it fails to properly bounds-check user-supplied data before copying it into an insufficiently sized memory buffer.
An attacker can exploit this issue to execute arbitrary code with SYSTEM-level privileges. Failed exploit attempts will result in denial-of-service conditions.
This issue affects the following:
EMC Documentum eRoom (prior to 7.4.2)
Open Text Search Server 6.0 and 6.1.
Other versions may be vulnerable as well.
The Hummingbird STR service ('STRsvc.exe') used in products by multiple vendors is prone to a buffer-overflow vulnerability because it fails to properly bounds-check user-supplied data before copying it into an insufficiently sized memory buffer.
An attacker can exploit this issue to execute arbitrary code with SYSTEM-level privileges. Failed exploit attempts will result in denial-of-service conditions.
This issue affects the following:
EMC Documentum eRoom (prior to 7.4.2)
Open Text Search Server 6.0 and 6.1.
Other versions may be vulnerable as well.
Exploit / POC
Multiple Vendor Hummingbird STR Service Buffer Overflow Vulnerability
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Multiple Vendor Hummingbird STR Service Buffer Overflow Vulnerability
Solution:
Reports indicate that EMC Documentum eRoom 7.4.2 is not affected by this issue and that Open Text has made patches available for affected products. Symantec has not confirmed this information. Please contact the vendors for more information.
Solution:
Reports indicate that EMC Documentum eRoom 7.4.2 is not affected by this issue and that Open Text has made patches available for affected products. Symantec has not confirmed this information. Please contact the vendors for more information.
References
Multiple Vendor Hummingbird STR Service Buffer Overflow Vulnerability
References:
References:
- Documentum eRoom (EMC)
- Hummingbird (Open Text)
- Search Server (Open Text)
- ZDI-09-074 Multiple Vendor Hummingbird STR Service Stack Overflow Vulnerability (Zero Day Initiative)
- ZDI-09-074: Multiple Vendor Hummingbird STR Service Stack Overflow Vulnerability (ZDI Disclosures
)