Microsoft DirectX Files Viewer ActiveX Control Remote Buffer Overflow Vulnerability
BID:5489
Info
Microsoft DirectX Files Viewer ActiveX Control Remote Buffer Overflow Vulnerability
| Bugtraq ID: | 5489 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 16 2002 12:00AM |
| Updated: | Aug 16 2002 12:00AM |
| Credit: | Published by "Andrew G. Tereschenko" <[email protected]>. |
| Vulnerable: |
Microsoft DirectX Files Viewer |
| Not Vulnerable: | |
Discussion
Microsoft DirectX Files Viewer ActiveX Control Remote Buffer Overflow Vulnerability
A vulnerability has been reported in the Microsoft DirectX Files Viewer ActiveX control, allegedly available for download as a sample application on a Microsoft hosted web page.
Reportedly, a buffer overflow vulnerability exists in the handling of the 'File' parameter by this ActiveX control. Exploitation may allow a malicious web page to execute arbitrary code with privileges of the web browser process.
Reportedly, the vulnerable ActiveX control has been digitally signed by Microsoft. It may be possible for an attacker to provide a copy of the vulnerable control and force installation on users who automatically accept signed ActiveX controls.
A vulnerability has been reported in the Microsoft DirectX Files Viewer ActiveX control, allegedly available for download as a sample application on a Microsoft hosted web page.
Reportedly, a buffer overflow vulnerability exists in the handling of the 'File' parameter by this ActiveX control. Exploitation may allow a malicious web page to execute arbitrary code with privileges of the web browser process.
Reportedly, the vulnerable ActiveX control has been digitally signed by Microsoft. It may be possible for an attacker to provide a copy of the vulnerable control and force installation on users who automatically accept signed ActiveX controls.
Exploit / POC
Microsoft DirectX Files Viewer ActiveX Control Remote Buffer Overflow Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Microsoft DirectX Files Viewer ActiveX Control Remote Buffer Overflow Vulnerability
Solution:
It has been reported that a solution is expected in Microsoft Windows 2000 SP3 and Microsoft Windows XP SP1. This has not, however, been confirmed.
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
It has been reported that a solution is expected in Microsoft Windows 2000 SP3 and Microsoft Windows XP SP1. This has not, however, been confirmed.
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Microsoft DirectX Files Viewer ActiveX Control Remote Buffer Overflow Vulnerability
References:
References:
- Internet Explorer Components Gallery (Microsoft)
- Technet Security (Microsoft)