Symantec Security Check RuFSI ActiveX Control Buffer Overflow Vulnerability
BID:8008
Info
Symantec Security Check RuFSI ActiveX Control Buffer Overflow Vulnerability
| Bugtraq ID: | 8008 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2003-0470 |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 23 2003 12:00AM |
| Updated: | Jul 12 2009 05:56PM |
| Credit: | Discovery credited to Cesar Cerrudo. |
| Vulnerable: |
Symantec RuFSI Utility Class 0 |
| Not Vulnerable: | |
Discussion
Symantec Security Check RuFSI ActiveX Control Buffer Overflow Vulnerability
It has been reported that the RuFSI Utility Class is vulnerable to a boundary condition error when invoked with long strings. This could potentially lead to the execution of code with the privileges of the user executing the web browser.
It has been reported that the RuFSI Utility Class is vulnerable to a boundary condition error when invoked with long strings. This could potentially lead to the execution of code with the privileges of the user executing the web browser.
References
Symantec Security Check RuFSI ActiveX Control Buffer Overflow Vulnerability
References:
References:
- Security Check (Symantec)
- Symantec Security Check ActiveX Buffer Overflow (Symantec)
- [Symantec Security Advisory] Symantec Security Check ActiveX Buffer Overflow Vul ("Sym Security"
)