CVE-2011-2591
Multiple buffer overflows in the Provideo ActiveX controls allow remote attackers to execute arbitrary code via crafted input fields, as demonstrated by (1) a long strIp argument to the voice method in 2way.dll in the alarm 1.0.3.1 ActiveX control, (2)…
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (5.39%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
Multiple buffer overflows in the Provideo ActiveX controls allow remote attackers to execute arbitrary code via crafted input fields, as demonstrated by (1) a long strIp argument to the voice method in 2way.dll in the alarm 1.0.3.1 ActiveX control, (2) a network response to AXPlayer.ocx in the GMAXPlayer 2.0.8.2 ActiveX control, the (3) UserName or (4) Password parameter to AXPlayer.ocx in the GMAXPlayer 2.0.8.2 ActiveX control, (5) a long Id parameter to the GetString method in PAxPlayer.ocx in the PAxPlayer 3.0.0.9 ActiveX control, or (6) a long strAdr parameter to the ConnectIPCam method in PAxPlayer.ocx in the PAxPlayer 3.0.0.9 ActiveX control.
- CVSS 2.0
- 9.3 HIGHAV:N/AC:M/Au:N/C:C/I:C/A:C
- EPSS
- 5.39% probability · 92th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-119
- Affected
- provideo/alarm activex control · provideo/gmax activex control · provideo/paxplayer activex control
- Source
- PSIRT-CNA@flexerasoftware.com
References
- http://osvdb.org/74310
- http://osvdb.org/74311
- http://osvdb.org/74312
- http://osvdb.org/74313
- http://osvdb.org/74314
- http://secunia.com/secunia_research/2011-56/Vendor Advisory
- http://secunia.com/secunia_research/2011-57/Vendor Advisory
- http://secunia.com/secunia_research/2011-58/Vendor Advisory
- http://www.securityfocus.com/bid/48977
- http://osvdb.org/74310
- http://osvdb.org/74311
- http://osvdb.org/74312
- http://osvdb.org/74313
- http://osvdb.org/74314
- http://secunia.com/secunia_research/2011-56/Vendor Advisory
- http://secunia.com/secunia_research/2011-57/Vendor Advisory
- http://secunia.com/secunia_research/2011-58/Vendor Advisory
- http://www.securityfocus.com/bid/48977
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.