Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Verisign i-Nav ActiveX Control Remote Buffer Overflow Vulnerability

Verisign i-Nav ActiveX control is prone to a buffer-overflow vulnerability. The software fails to perform sufficient bounds-checking of user-supplied input before copying it to an insufficiently sized memory buffer.

Invoking the object from a malicious website or HTML email may trigger the condition. If the vulnerability were successfully exploited, this would corrupt process memory, resulting in arbitrary code execution. Arbitrary code would be executed in the context of the client application using the affected ActiveX control.







 

Privacy Statement
Copyright 2009, SecurityFocus