Polaris Viewer DOCX File Remote Buffer Overflow Vulnerability
BID:62075
Info
Polaris Viewer DOCX File Remote Buffer Overflow Vulnerability
| Bugtraq ID: | 62075 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 29 2013 12:00AM |
| Updated: | Aug 29 2013 12:00AM |
| Credit: | MWR Labs via TippingPoint Zero Day Initiative |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
Polaris Viewer DOCX File Remote Buffer Overflow Vulnerability
Polaris Viewer is prone to a remote buffer-overflow vulnerability.
Attackers can exploit this issue to execute arbitrary code in the context of the affected application. Failed exploit attempts will likely cause denial-of-service conditions.
Polaris Viewer is prone to a remote buffer-overflow vulnerability.
Attackers can exploit this issue to execute arbitrary code in the context of the affected application. Failed exploit attempts will likely cause denial-of-service conditions.
Exploit / POC
Polaris Viewer DOCX File Remote Buffer Overflow Vulnerability
This issue was demonstrated at the Pwn2Own 2012. This exploit is not otherwise publicly available or known to be circulating in the wild.
This issue was demonstrated at the Pwn2Own 2012. This exploit is not otherwise publicly available or known to be circulating in the wild.
Solution / Fix
Polaris Viewer DOCX File Remote Buffer Overflow Vulnerability
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
References
Polaris Viewer DOCX File Remote Buffer Overflow Vulnerability
References:
References:
- Infraware Homepage (Infraware)
- (0Day) (Mobile Pwn2Own) Polaris Viewer DOCX VML Shape Tag Remote Code Execution (TippingPoint Zero Day Initiative)