|
|
| |
Credit:
The information has been provided by Dmitriy Pletnev.
The original article can be found at: http://seclists.org/fulldisclosure/2010/Dec/510
|
| |
Vulnerable Systems:
* Crystal Reports 2008 SP3 Fix Pack 3.2 Print ActiveX (12.3.2.753)
The vulnerability is caused due to a boundary error in the "CrystalReports12.CrystalPrintControl.1" ActiveX control (PrintControl.dll) when processing the "ServerResourceVersion" property and can be exploited to cause a heap-based buffer overflow via an overly long string.
Successful exploitation allows execution of arbitrary code.
Workaround:
Set the kill-bit for the affected ActiveX control.
CVE Information:
CVE-2010-2590
Disclosure Timeline:
19/11/2010 - Vendor notified.
19/11/2010 - Vendor response.
24/11/2010 - Vendor confirms the vulnerability.
14/12/2010 - Independent discovery and public disclosure by a third party.
14/12/2010 - Public disclosure.
|
|
|