Computer Security
[EN] securityvulns.ru
no-pyccku



OrbitDownloader buffer overflow
Published:05.04.2008
Source:BUGTRAQ
SecurityVulns ID:8868
Type:client
Level:6/10
Description:Buffer overflow on Unicode URL parsing.
Affected:ORBITDOWNLOADER : Orbit downloader 2.6
CVE:CVE-2008-1602 (Stack-based buffer overflow in Orbit downloader 2.6.3 and 2.6.4 allows remote attackers to execute arbitrary code via a long download URL, which is not properly handled during Unicode conversion for a balloon notification after a download has failed.)
Original documentdocumentCORE SECURITY TECHNOLOGIES ADVISORIES, CORE-2008-0314 - Orbit Downloader "Download failed" buffer overflow (05.04.2008)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru