Thread-topic: [SA20969] eBay Enhanced Picture Services ActiveX Control Buffer Overflow
>
> TITLE:
> eBay Enhanced Picture Services ActiveX Control Buffer Overflow
>
> SECUNIA ADVISORY ID:
> SA20969
>
> VERIFY ADVISORY:
> http://secunia.com/advisories/20969/
>
> CRITICAL:
> Highly critical
>
> IMPACT:
> System access
>
> WHERE:
> From remote
>
> SOFTWARE:
> eBay Enhanced Picture Services ActiveX Control 1.x
> http://secunia.com/product/10967/
>
> DESCRIPTION:
> Will Dormann has reported a vulnerability in eBay Enhanced Picture
> Services ActiveX Control, which can be exploited by malicious people
> to compromise a user's system.
>
> The vulnerability is caused due to an unspecified boundary error in
> EUPWALcontrol.dll and can be exploited to cause a buffer overflow by
> e.g. tricking a user into visiting a malicious web site.
>
> Successful exploitation allows execution of arbitrary code.
>
> The vulnerability has been reported in version 1.0.3.36. Other
> versions may also be affected.
>
> SOLUTION:
> Update to version 1.0.3.48 or later.
>
> PROVIDED AND/OR DISCOVERED BY:
> Will Dormann
>
> ORIGINAL ADVISORY:
> US-CERT VU#597721:
> http://www.kb.cert.org/vuls/id/597721