<?xml version="1.0" encoding="UTF-8"?> <rss
version="2.0"
xmlns:content="http://purl.org/rss/1.0/modules/content/"
xmlns:wfw="http://wellformedweb.org/CommentAPI/"
xmlns:dc="http://purl.org/dc/elements/1.1/"
xmlns:atom="http://www.w3.org/2005/Atom"
xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
><channel><title>M32 Security &#187; msvidctl</title> <atom:link href="http://m32consulting.com/tag/msvidctl/feed/" rel="self" type="application/rss+xml" /><link>http://m32consulting.com</link> <description>Network Security Info, News, and Resources</description> <lastBuildDate>Sun, 22 Jan 2012 23:37:02 +0000</lastBuildDate> <language>en</language> <sy:updatePeriod>hourly</sy:updatePeriod> <sy:updateFrequency>1</sy:updateFrequency> <item><title>Microsoft DirectShow ActiveX Buffer Overflow exploit in the wild</title><link>http://m32consulting.com/2009/07/microsoft-directshow-activex-buffer-overflow-exploit-in-the-wild/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=microsoft-directshow-activex-buffer-overflow-exploit-in-the-wild</link> <comments>http://m32consulting.com/2009/07/microsoft-directshow-activex-buffer-overflow-exploit-in-the-wild/#comments</comments> <pubDate>Mon, 06 Jul 2009 17:50:48 +0000</pubDate> <dc:creator>Kyle</dc:creator> <category><![CDATA[Software]]></category> <category><![CDATA[ActiveX]]></category> <category><![CDATA[activex buffer overflow]]></category> <category><![CDATA[Advisory]]></category> <category><![CDATA[attack]]></category> <category><![CDATA[based buffer overflow]]></category> <category><![CDATA[boundary]]></category> <category><![CDATA[Buffer]]></category> <category><![CDATA[buffer overflow attack]]></category> <category><![CDATA[code]]></category> <category><![CDATA[DirectShow]]></category> <category><![CDATA[dll]]></category> <category><![CDATA[image content]]></category> <category><![CDATA[internet explorer]]></category> <category><![CDATA[microsoft]]></category> <category><![CDATA[microsoft directshow]]></category> <category><![CDATA[msvidctl]]></category> <category><![CDATA[network security appliance]]></category> <category><![CDATA[Overflow]]></category> <category><![CDATA[secunia]]></category> <category><![CDATA[stack overflow]]></category><guid
isPermaLink="false">http://m32consulting.com/?p=37</guid> <description><![CDATA[Be sure to check for patches and network security appliance definitions/signatures today, Microsoft has been reminded again of why people hate ActiveX; Secunia is reporting a nasty new DirectShow Buffer Overflow attack is in the wild. This one is very dangerous, as it exploits the built-in DirectShow control in Internet Explorer (msvidctl.dll) by using specially-crafted [...]]]></description> <content:encoded><![CDATA[<p>Be sure to check for patches and network security appliance definitions/signatures today, Microsoft has been reminded again of why people hate ActiveX; Secunia is reporting a nasty new DirectShow Buffer Overflow attack is in the wild. This one is very dangerous, as it exploits the built-in DirectShow control in Internet Explorer (msvidctl.dll) by using specially-crafted image content to create a boundary error and subsequently cause a stack-based buffer overflow allowing the attacker to execute arbitrary code on the compromised machine.</p><p>The worst part? It&#8217;s already being actively used by bad people. Although Secunia&#8217;s site currently shows Windows XP as the only OS vulnerable, I wouldn&#8217;t be surprised to see more versions of Windows tacked on in the near future.</p><p><a
title="Secunia Advisory 35683" href="http://secunia.com/advisories/35683/">More information can be found here.</a></p>Tags: <a
href="http://m32consulting.com/tag/activex/" title="ActiveX" rel="tag">ActiveX</a>, <a
href="http://m32consulting.com/tag/activex-buffer-overflow/" title="activex buffer overflow" rel="tag">activex buffer overflow</a>, <a
href="http://m32consulting.com/tag/advisory/" title="Advisory" rel="tag">Advisory</a>, <a
href="http://m32consulting.com/tag/attack/" title="attack" rel="tag">attack</a>, <a
href="http://m32consulting.com/tag/based-buffer-overflow/" title="based buffer overflow" rel="tag">based buffer overflow</a>, <a
href="http://m32consulting.com/tag/boundary/" title="boundary" rel="tag">boundary</a>, <a
href="http://m32consulting.com/tag/buffer/" title="Buffer" rel="tag">Buffer</a>, <a
href="http://m32consulting.com/tag/buffer-overflow-attack/" title="buffer overflow attack" rel="tag">buffer overflow attack</a>, <a
href="http://m32consulting.com/tag/code/" title="code" rel="tag">code</a>, <a
href="http://m32consulting.com/tag/directshow/" title="DirectShow" rel="tag">DirectShow</a>, <a
href="http://m32consulting.com/tag/dll/" title="dll" rel="tag">dll</a>, <a
href="http://m32consulting.com/tag/image-content/" title="image content" rel="tag">image content</a>, <a
href="http://m32consulting.com/tag/internet-explorer/" title="internet explorer" rel="tag">internet explorer</a>, <a
href="http://m32consulting.com/tag/microsoft/" title="microsoft" rel="tag">microsoft</a>, <a
href="http://m32consulting.com/tag/microsoft-directshow/" title="microsoft directshow" rel="tag">microsoft directshow</a>, <a
href="http://m32consulting.com/tag/msvidctl/" title="msvidctl" rel="tag">msvidctl</a>, <a
href="http://m32consulting.com/tag/network-security-appliance/" title="network security appliance" rel="tag">network security appliance</a>, <a
href="http://m32consulting.com/tag/overflow/" title="Overflow" rel="tag">Overflow</a>, <a
href="http://m32consulting.com/tag/secunia/" title="secunia" rel="tag">secunia</a>, <a
href="http://m32consulting.com/tag/stack-overflow/" title="stack overflow" rel="tag">stack overflow</a><br
/> ]]></content:encoded> <wfw:commentRss>http://m32consulting.com/2009/07/microsoft-directshow-activex-buffer-overflow-exploit-in-the-wild/feed/</wfw:commentRss> <slash:comments>0</slash:comments> </item> </channel> </rss>
<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Minified using disk: basic
Page Caching using disk: enhanced
Database Caching 4/16 queries in 0.018 seconds using disk: basic
Object Caching 1045/1082 objects using disk: basic

Served from: m32consulting.com @ 2012-02-11 17:25:49 -->
