E-Mail:

GetRight Buffer Overflow Vulnerability

Secunia Advisory SA13391

Critical: Highly critical
Impact: System access
Where: From remote
Solution Status: Vendor Patch
Software: GetRight 5.x

ATmaCA has reported a vulnerability in GetRight, which potentially can be exploited by malicious people to compromise a user’s system.

The vulnerability is caused due to a boundary error in a 3rd-party compression library (DUNZIP32.dll) when processing skin files. This can be exploited by e.g. a malicious Web site to cause a buffer overflow via a specially crafted skin file.

Successful exploitation may allow execution of arbitrary code.

The vulnerability is related to:
SA12805

The vulnerability has been reported in version 5.2a. Prior versions may also be affected.

Solution:
Update to version 5.2b.

What Do You Think?

 

Want to Start a Blog Here for Free?

Are you an expert in one subject or another? If your goal is to help others and dispense hard-earned information back to the community, stake a claim on your very own Lockergnome blog today! You can write about anything - no matter the topic. Sign-up to start blogging!

Favorite - Oct 6, 2008

wowApic

Deals - Oct 6, 2008

Looking To Buy? Looking To Sell? Try SecondSpin.com

Diana's Tips - Oct 2, 2008

Change The Page Orientation In Word 2003

Feedback, Tips - Oct 1, 2008

Top 5 Reasons To Buy A Custom Built Computer Over A Pre-Built Machine

89 queries / 0.807 seconds.