Multiple Consona Products 'SdcUser.TgConCtl' ActiveX Control Buffer Overflow Vulnerability
BID:40006
Info
Multiple Consona Products 'SdcUser.TgConCtl' ActiveX Control Buffer Overflow Vulnerability
| Bugtraq ID: | 40006 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | May 07 2010 12:00AM |
| Updated: | May 07 2010 12:00AM |
| Credit: | Rubén Santamarta |
| Vulnerable: |
Consona Consona Subscriber Assistance 0 Consona Consona Live Assistance 0 Consona Consona Dynamic Agent 0 |
| Not Vulnerable: | |
Discussion
Multiple Consona Products 'SdcUser.TgConCtl' ActiveX Control Buffer Overflow Vulnerability
An ActiveX control included with multiple Consona (formerly SupportSoft) products is prone to a buffer-overflow vulnerability because the control fails to perform adequate boundary checks on user-supplied data.
Successful exploits allow remote attackers to execute arbitrary code in the context of the application, typically Internet Explorer, using the ActiveX control. Failed exploit attempts will likely result in denial-of-service conditions.
The following are vulnerable:
Consona Live Assistance
Consona Dynamic Agent
Consona Subscriber Assistance
An ActiveX control included with multiple Consona (formerly SupportSoft) products is prone to a buffer-overflow vulnerability because the control fails to perform adequate boundary checks on user-supplied data.
Successful exploits allow remote attackers to execute arbitrary code in the context of the application, typically Internet Explorer, using the ActiveX control. Failed exploit attempts will likely result in denial-of-service conditions.
The following are vulnerable:
Consona Live Assistance
Consona Dynamic Agent
Consona Subscriber Assistance
Exploit / POC
Multiple Consona Products 'SdcUser.TgConCtl' ActiveX Control Buffer Overflow Vulnerability
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Multiple Consona Products 'SdcUser.TgConCtl' ActiveX Control Buffer Overflow Vulnerability
Solution:
Updates are available; please see the references for more information.
Solution:
Updates are available; please see the references for more information.
References
Multiple Consona Products 'SdcUser.TgConCtl' ActiveX Control Buffer Overflow Vulnerability
References:
References:
- Consona (formerly SupportSoft) Intelligent Assistance Suite (IAS) cross-site scr (US-CERT)
- Consona Homepage (Consona)
- Microsoft Knowledge Base Article 240797 (Microsoft)
- Wintercore releases an advisory for Consona products. (Wintercore)
- SecurityBulletin_April2010.pdf (Consona)