Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security FullDisclosure
[Top] [All Lists]

[Full-disclosure] MySpace Uploader ActiveX Control Buffer Overflow

Subject: [Full-disclosure] MySpace Uploader ActiveX Control Buffer Overflow
Date: Thu, 31 Jan 2008 02:23:08 -0500
Who:
MySpace
http://www.myspace.com

What:
MySpace repackages Aurigma's ImageUploader ActiveX. This control 
enables MySpace users to upload images to their MySpace page(s).

How:
MySpaceUploader.ocx version 1.0.0.4
{48DD0448-9209-4F81-9F6D-D83562940134}

This control is vulnerable to a buffer overflow in the Action 
property. 

I believe FaceBook also uses/repackages the Aurigma control, I 
don't know which version though.

Fix:
No official fix known
Vendor notified

Workaround:
Set the KillBit for this control, see 
http://support.microsoft.com/kb/240797


Elazar



--
Boost your business with a small business loan. Click now!
http://tagline.hushmail.com/fc/Ioyw6h4euX1tlqACEpmeqPPYJCrC9PY9DoHGlDkrJ01F6c5ss0X4SU/

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

<Prev in Thread] Current Thread [Next in Thread>
  • [Full-disclosure] MySpace Uploader ActiveX Control Buffer Overflow, Elazar Broad <=