Pthreads-win32 'quserex.dll' DLL Loading Arbitrary Code Execution Vulnerability
BID:42899
Info
Pthreads-win32 'quserex.dll' DLL Loading Arbitrary Code Execution Vulnerability
| Bugtraq ID: | 42899 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 01 2010 12:00AM |
| Updated: | Sep 07 2011 01:10PM |
| Credit: | Peter Van Eeckhoutte |
| Vulnerable: |
Ross Johnson Pthreads-win32 2.8 Inkscape Inkscape 0.48 r9654 GnuCash GnuCash 2.4.7 r20813 |
| Not Vulnerable: | |
Discussion
Pthreads-win32 'quserex.dll' DLL Loading Arbitrary Code Execution Vulnerability
Pthreads-win32 is prone to a vulnerability that lets attackers execute arbitrary code.
An attacker can exploit this issue by enticing a legitimate user to use the vulnerable application to open a file from a network share location that contains a specially crafted Dynamic Link Library (DLL) file.
The following are vulnerable:
pthreads-win32 2.8.0
inksacpe 0.48.0.r966
Other applications that use the vulnerable library may also be affected.
Pthreads-win32 is prone to a vulnerability that lets attackers execute arbitrary code.
An attacker can exploit this issue by enticing a legitimate user to use the vulnerable application to open a file from a network share location that contains a specially crafted Dynamic Link Library (DLL) file.
The following are vulnerable:
pthreads-win32 2.8.0
inksacpe 0.48.0.r966
Other applications that use the vulnerable library may also be affected.
Exploit / POC
Pthreads-win32 'quserex.dll' DLL Loading Arbitrary Code Execution Vulnerability
Attackers can exploit this issue by tricking a victim into opening a file on a WebDAV or SMB share.
Attackers can exploit this issue by tricking a victim into opening a file on a WebDAV or SMB share.
Solution / Fix
Pthreads-win32 'quserex.dll' DLL Loading Arbitrary Code Execution Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
Pthreads-win32 'quserex.dll' DLL Loading Arbitrary Code Execution Vulnerability
References:
References:
- Application DLL Load Hijacking (HD Moore)
- Exploiting DLL Hijacking Flaws (hdm)
- Inkscape Homepage (Inkscape)
- Microsoft Security Advisory 2269637 Released (Microsoft)
- More information about the DLL Preloading remote attack vector (Microsoft)
- Pthreads-win32 Homepage (Ross Johnson)
- Flash Player 9 DLL Hijacking Exploit (schannel.dll) ([email protected])
- Microsoft Security Advisory (2269637) (Microsoft)