ADP and H-designer CVE-2013-4696 Remote Buffer Overflow Vulnerability
BID:57546
Info
ADP and H-designer CVE-2013-4696 Remote Buffer Overflow Vulnerability
| Bugtraq ID: | 57546 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2013-4696 CVE-2012-4696 |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 24 2013 12:00AM |
| Updated: | Apr 13 2015 09:05PM |
| Credit: | Kuang-Chun Hung |
| Vulnerable: |
Beijerelectronics H-Designer 6.5.0 B180_R1967 Beijerelectronics ADP 6.5.1-186_R2942 Beijerelectronics ADP 6.5.0-180_R1967 |
| Not Vulnerable: | |
Discussion
ADP and H-designer CVE-2013-4696 Remote Buffer Overflow Vulnerability
ADP and H-designer are prone to a remote buffer-overflow vulnerability because they fail to properly validate user-supplied input before copying it into a fixed-length buffer.
Attackers can exploit this issue to execute arbitrary code with the privileges of the user running the affected application. Failed attacks may cause a denial-of-service condition.
The following versions are vulnerable:
ADP 6.5.0-180_R1967 and 6.5.1-186_R2942
H-Designer 6.5.0 B180_R1967
ADP and H-designer are prone to a remote buffer-overflow vulnerability because they fail to properly validate user-supplied input before copying it into a fixed-length buffer.
Attackers can exploit this issue to execute arbitrary code with the privileges of the user running the affected application. Failed attacks may cause a denial-of-service condition.
The following versions are vulnerable:
ADP 6.5.0-180_R1967 and 6.5.1-186_R2942
H-Designer 6.5.0 B180_R1967
Exploit / POC
ADP and H-designer CVE-2013-4696 Remote Buffer Overflow Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
ADP and H-designer CVE-2013-4696 Remote Buffer Overflow Vulnerability
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.
References
ADP and H-designer CVE-2013-4696 Remote Buffer Overflow Vulnerability
References:
References:
- Beijer Electronics Home Page (Beijer Electronics)
- ICSA-13-024-01 BEIJER ELECTRONICS ADP AND H-DESIGNER BUFFER OVERFLOW VULNERABILI (ICS-CERT)