Intel Indeo Codec Media Content Multiple Buffer Overflow Vulnerabilities
BID:37251
Info
Intel Indeo Codec Media Content Multiple Buffer Overflow Vulnerabilities
| Bugtraq ID: | 37251 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2009-4210 CVE-2009-4313 |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 08 2009 12:00AM |
| Updated: | Dec 21 2009 09:03PM |
| Credit: | Paul Byrne of NGS Software, An anonymous researcher, working with TippingPoint and the Zero Day Initiative, Bing Liu of Fortinet's FortiGuard Lab, VeriSign iDefense Labs, Dave Lenoe of Adobe |
| Vulnerable: |
Microsoft Windows XP Tablet PC Edition SP3 Microsoft Windows XP Tablet PC Edition SP2 Microsoft Windows XP Tablet PC Edition SP1 Microsoft Windows XP Tablet PC Edition Microsoft Windows XP Professional x64 Edition SP3 Microsoft Windows XP Professional x64 Edition SP2 Microsoft Windows XP Professional x64 Edition Microsoft Windows XP Professional SP3 Microsoft Windows XP Professional SP2 Microsoft Windows XP Professional SP1 Microsoft Windows XP Professional Microsoft Windows XP Media Center Edition SP3 Microsoft Windows XP Media Center Edition SP2 Microsoft Windows XP Media Center Edition SP1 Microsoft Windows XP Media Center Edition Microsoft Windows XP Home SP3 Microsoft Windows XP Home SP2 Microsoft Windows XP Home SP1 Microsoft Windows XP Home Microsoft Windows XP 64-bit Edition SP1 Microsoft Windows XP 64-bit Edition Microsoft Windows XP 0 Microsoft Windows Server 2003 x64 SP2 Microsoft Windows Server 2003 x64 SP1 Microsoft Windows Server 2003 Web Edition SP2 Microsoft Windows Server 2003 Web Edition SP1 Microsoft Windows Server 2003 Web Edition Microsoft Windows Server 2003 Standard Edition SP2 Microsoft Windows Server 2003 Standard Edition SP1 Microsoft Windows Server 2003 Standard Edition Microsoft Windows Server 2003 Itanium SP2 Microsoft Windows Server 2003 Itanium SP1 Microsoft Windows Server 2003 Itanium 0 Microsoft Windows Server 2003 Enterprise x64 Edition SP2 Microsoft Windows Server 2003 Enterprise x64 Edition Microsoft Windows Server 2003 Enterprise Edition Itanium SP1 Microsoft Windows Server 2003 Enterprise Edition Itanium 0 Microsoft Windows Server 2003 Enterprise Edition SP1 Microsoft Windows Server 2003 Enterprise Edition Microsoft Windows Server 2003 Datacenter x64 Edition SP2 Microsoft Windows Server 2003 Datacenter x64 Edition Microsoft Windows Server 2003 SP2 Microsoft Windows 2000 Server SP4 Microsoft Windows 2000 Server SP3 Microsoft Windows 2000 Server SP2 Microsoft Windows 2000 Server SP1 Microsoft Windows 2000 Server Microsoft Windows 2000 Professional SP4 Microsoft Windows 2000 Professional SP3 Microsoft Windows 2000 Professional SP2 Microsoft Windows 2000 Professional SP1 Microsoft Windows 2000 Professional Microsoft Windows 2000 Datacenter Server SP4 Microsoft Windows 2000 Datacenter Server SP3 Microsoft Windows 2000 Datacenter Server SP2 Microsoft Windows 2000 Datacenter Server SP1 Microsoft Windows 2000 Datacenter Server Microsoft Windows 2000 Advanced Server SP4 Microsoft Windows 2000 Advanced Server SP3 Microsoft Windows 2000 Advanced Server SP2 Microsoft Windows 2000 Advanced Server SP1 Microsoft Windows 2000 Advanced Server Intel Indeo Codec 0 |
| Not Vulnerable: | |
Discussion
Intel Indeo Codec Media Content Multiple Buffer Overflow Vulnerabilities
Intel Indeo Codec is prone to a stack-based buffer-overflow vulnerability and a heap-based buffer-overflow vulnerability.
An attacker can exploit these issues to execute arbitrary code within the context of the affected application. Failed exploit attempts will result in a denial-of-service condition.
Intel Indeo Codec is prone to a stack-based buffer-overflow vulnerability and a heap-based buffer-overflow vulnerability.
An attacker can exploit these issues to execute arbitrary code within the context of the affected application. Failed exploit attempts will result in a denial-of-service condition.
Exploit / POC
Intel Indeo Codec Media Content Multiple Buffer Overflow Vulnerabilities
A working commercial exploit is available through VUPEN Security - Exploit and PoCs Service. This exploit is not otherwise publicly available or known to be circulating in the wild.
A working commercial exploit is available through VUPEN Security - Exploit and PoCs Service. This exploit is not otherwise publicly available or known to be circulating in the wild.
Solution / Fix
Intel Indeo Codec Media Content Multiple Buffer Overflow Vulnerabilities
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
Intel Indeo Codec Media Content Multiple Buffer Overflow Vulnerabilities
References:
References:
- Fortinet Discovers Vulnerability in Indeo Codec (Fortinet)
- Intel Homepage (Intel)
- Microsoft Security Advisory (954157) Security Enhancements for the Indeo Codec (Microsoft)
- Microsoft Windows Indeo32 Codec Parsing Heap Corruption Vulnerability (iDefense Labs)
- Microsoft Windows Intel Indeo Codec Parsing Heap Overflow Vulnerability (Zero Day Initiative)
- Microsoft Windows Intel Indeo Codec Parsing Stack Overflow Vulnerability (Zero Day Initiative)
- ZDI-09-089: Microsoft Windows Intel Indeo Codec Parsing Heap Overflow Vulnerabil (ZDI Disclosures
) - ZDI-09-090: Microsoft Windows Intel Indeo Codec Parsing Stack Overflow Vulnerabi (ZDI Disclosures
) - Vulnerability Note VU#228561 Microsoft Indeo Directshow codecs contain multiple (US-CERT)