Multiple CyberLink Products DLL Loading Arbitrary Code Execution Vulnerability
BID:42760
Info
Multiple CyberLink Products DLL Loading Arbitrary Code Execution Vulnerability
| Bugtraq ID: | 42760 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 25 2010 12:00AM |
| Updated: | Dec 13 2010 03:34PM |
| Credit: | extraexploit |
| Vulnerable: |
CyberLink PowerDirector 7 CyberLink Power2Go DVD 6.0 |
| Not Vulnerable: | |
Discussion
Multiple CyberLink Products DLL Loading Arbitrary Code Execution Vulnerability
Multiple CyberLink products are prone to a vulnerability that lets attackers execute arbitrary code.
An attacker can exploit this issue by enticing a legitimate user to use the vulnerable application to open a file from a network share location that contains a specially crafted Dynamic Link Library (DLL) file.
Multiple CyberLink products are prone to a vulnerability that lets attackers execute arbitrary code.
An attacker can exploit this issue by enticing a legitimate user to use the vulnerable application to open a file from a network share location that contains a specially crafted Dynamic Link Library (DLL) file.
Exploit / POC
Multiple CyberLink Products DLL Loading Arbitrary Code Execution Vulnerability
Attackers can exploit this issue with readily available tools.
Core Security Technologies has developed a working commercial exploit for its CORE IMPACT product. This exploit is not otherwise publicly available or known to be circulating in the wild.
Attackers can exploit this issue with readily available tools.
Core Security Technologies has developed a working commercial exploit for its CORE IMPACT product. This exploit is not otherwise publicly available or known to be circulating in the wild.
Solution / Fix
Multiple CyberLink Products DLL Loading Arbitrary Code Execution Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
Multiple CyberLink Products DLL Loading Arbitrary Code Execution Vulnerability
References:
References:
- Application DLL Load Hijacking (HD Moore)
- CyberLink Homepage (CyberLink)
- Exploiting DLL Hijacking Flaws (hdm)
- Microsoft Security Advisory 2269637 Released (Microsoft)
- More information about the DLL Preloading remote attack vector (Microsoft)
- Microsoft Security Advisory (2269637) (Microsoft)