Progress and OpenEdge _mprosrv Buffer Overflow Vulnerability

Progress and OpenEdge are prone to a remote buffer-overflow because the software fails to bounds-check user-supplied data before copying it into an insufficiently sized buffer.

An attacker could exploit this issue to execute arbitrary code within the context of the affected application. Failed exploit attempts will result in a denial of service.

The vendor is tracking this issue with number OE00148128.

RSA Security has acknowledged that this vulnerability affects a number of their products. Patches and hotfixes are available to RSA SecurCare Online customers.


 

Privacy Statement
Copyright 2010, SecurityFocus