OSVDB ID: 36934

Title: Microsoft Agent URL Handling Remote Code Execution

Info

Disclosure

Sep 11, 2007

Discovery

Unknown

Dates

Exploit

Unknown

Solution

Unknown

Description

A remote overflow exists in Microsoft Windows 2000 Agent ActiveX control. The ActiveX control fails to sanitize URLs passed as argument to a certain unspecified method, resulting in a stack-based buffer overflow. With a specially crafted request, an attacker can cause execution of arbitrary code resulting in a loss of confidentiality, integrity, and/or availability.

Classification

Location: Remote / Network Access
Attack Type: Input Manipulation
Impact: Loss of Integrity
Exploit: Exploit Private, Exploit Commercial
Disclosure: OSVDB Verified

Solution

Currently, there are no known workarounds or upgrades to correct this issue. However, Microsoft has released a patch to address this vulnerability.

Products

Microsoft Corporation

Windows

2000 SP4

References

Credit

  • Yamata Li - Palo Alto Networks
  • iDefense Labs - iDefense Labs
  • Assurent Secure Technologies - Assurent Secure Technologies


Direct URL: http://osvdb.org/36934