Overview
The Online Media Technologies NCTsoft NCTAudioFile2 ActiveX control contains a buffer overflow vulnerability, which may allow a remote, unauthenticated attacker to execute arbitrary code on a vulnerable system.
Description
Online Media Technologies NCTsoft provides an ActiveX control called NCTAudioFile2. This control is provided by the file NCTAudioFile2.dll. The NCTAudioFile2 ActiveX control is included with several applications, including, but not limited to:
|
Impact
By convincing a victim to view an HTML document (web page, HTML email, or email attachment), an attacker could run arbitrary code with the privileges of the user running IE. |
Solution
Disable the NCTAudioFile2 ActiveX control in Internet Explorer |
Disable ActiveX |
Vendor Information
CVSS Metrics
Group | Score | Vector |
---|---|---|
Base | ||
Temporal | ||
Environmental |
References
- http://secunia.com/blog/6/
- http://secunia.com/secunia_research/2007-2/
- http://secunia.com/advisories/23475/
- http://secunia.com/advisories/23548/
- http://secunia.com/advisories/23536/
- http://secunia.com/advisories/23485/
- http://secunia.com/advisories/23541/
- http://secunia.com/advisories/23495/
- http://secunia.com/advisories/23516/
- http://secunia.com/advisories/23542/
- http://secunia.com/advisories/23558/
- http://secunia.com/advisories/23753/
- http://secunia.com/advisories/23532/
- http://secunia.com/advisories/23745/
- http://secunia.com/advisories/23546/
- http://secunia.com/advisories/23552/
- http://secunia.com/advisories/23561/
- http://secunia.com/advisories/23551/
- http://secunia.com/advisories/23562/
- http://www.securityfocus.com/bid/22196
- http://www.securityfocus.com/archive/1/457965/30/0/threaded
- http://support.microsoft.com/kb/240797
- http://nctsoft.com/products/NCTAudioEditor2/
- http://secunia.com/secunia_research/2007-2/advisory/
- http://secunia.com/advisories/22922/
- http://secunia.com/advisories/28407/
Acknowledgements
This vulnerability was reported by Will Dormann of CERT/CC. The vulnerability was also independently discovered and publicly disclosed by Carsten Eiram of Secunia Research
This document was written by Will Dormann.
Other Information
CVE IDs: | CVE-2007-0018 |
Severity Metric: | 17.17 |
Date Public: | 2007-01-24 |
Date First Published: | 2007-01-24 |
Date Last Updated: | 2008-04-28 19:56 UTC |
Document Revision: | 20 |