Short Name |
HTTP:STC:ACTIVEX:HP-AUDIO-REC |
---|---|
Severity |
Major |
Recommended |
No |
Recommended Action |
Drop |
Category |
HTTP |
Keywords |
HP Photo Creative audio.Record ActiveX Stack Buffer Overflow |
Release Date |
2011/01/11 |
Update Number |
1846 |
Supported Platforms |
di-5.3+, idp-4.0+, isg-3.0+, j-series-9.5+, mx-11.4+, srx-12.1+, srx-branch-12.1+, vmx-17.4+, vsrx-12.1+, vsrx3bsd-18.2+ |
This signature detects attempts to exploit a known buffer overflow vulnerability in HP Photo Creative ActiveX control. It is due to a boundary error in ContentMan.dll while parsing arguments passed to the Resample function of the audio.Record ActiveX control. Remote attackers can exploit this by enticing the target users to visit a specially crafted Web page. A successful attack can result in arbitrary code execution with the privileges of the logged in user.
HP Photo Creative is prone to a buffer-overflow vulnerability because the application fails to perform adequate boundary checks on user-supplied data. The issue affects the 'audio.Record.1' ActiveX control. Successful exploits will allow remote attackers to execute arbitrary code in the context of the application (typically Internet Explorer) using the ActiveX control. Failed exploit attempts will likely result in denial-of-service conditions.