Autodesk MapGuide Viewer ActiveX Control 'LayersViewWidth()' Method Buffer Overflow Vulnerability
BID:42906
Info
Autodesk MapGuide Viewer ActiveX Control 'LayersViewWidth()' Method Buffer Overflow Vulnerability
| Bugtraq ID: | 42906 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 01 2010 12:00AM |
| Updated: | Sep 01 2010 12:00AM |
| Credit: | d3b4g |
| Vulnerable: |
Autodesk MapGuide Viewer 6.5 |
| Not Vulnerable: | |
Discussion
Autodesk MapGuide Viewer ActiveX Control 'LayersViewWidth()' Method Buffer Overflow Vulnerability
Autodesk MapGuide ActiveX Control is prone to a buffer-overflow vulnerability because it fails to properly bounds-check user-supplied data before copying it into an insufficiently sized memory buffer.
An attacker can exploit this issue to execute arbitrary code within the context of the application, typically Internet Explorer, that uses the ActiveX control. Failed exploit attempts will result in denial-of-service conditions.
Autodesk MapGuide Viewer 6.5 is vulnerable; other versions may be affected.
Autodesk MapGuide ActiveX Control is prone to a buffer-overflow vulnerability because it fails to properly bounds-check user-supplied data before copying it into an insufficiently sized memory buffer.
An attacker can exploit this issue to execute arbitrary code within the context of the application, typically Internet Explorer, that uses the ActiveX control. Failed exploit attempts will result in denial-of-service conditions.
Autodesk MapGuide Viewer 6.5 is vulnerable; other versions may be affected.
Exploit / POC
Autodesk MapGuide Viewer ActiveX Control 'LayersViewWidth()' Method Buffer Overflow Vulnerability
An attacker may exploit this issue by enticing a victim into visiting a malicious webpage.
The following exploit is available:
An attacker may exploit this issue by enticing a victim into visiting a malicious webpage.
The following exploit is available: