| |||||||||||||
| Test ID: | 1.3.6.1.4.1.25623.1.0.900755 |
| Category: | Buffer overflow |
| Title: | Orbital Viewer File Processing Buffer Overflow Vulnerabilities |
| Summary: | Check for the version of Orbital Viewer |
| Description: | Overview: This host has Orbital Viewer installed and is prone to buffer overflow vulnerabilities. Vulnerabilities Insight: The flaw is due to error within the processing of '.orb' and '.ov' files, which can be exploited to cause a stack-based buffer overflow when a user is tricked into opening a specially crafted '.orb' or '.ov' file. Impact: Successful exploitation will allow attackers to cause buffer overflow and execute arbitrary code on the system by tricking a user into opening a malicious file or cause the affected application to crash. Impact Level: Application Affected Software/OS: Orbital Viewer version 1.04 Fix: No solution or patch is available as of 24th March, 2010. Information regarding this issue will be updated once the solution details are available. For updates refer to http://www.orbitals.com/orb/index.html References: http://www.osvdb.org/62580 http://secunia.com/advisories/38720 http://www.vupen.com/english/advisories/2010/0478 http://www.corelan.be:8800/index.php/forum/security-advisories/corelan-10-011-orbital-viewer-orb-buffer-overflow/ |
| Cross-Ref: |
BugTraq ID: 38436 Common Vulnerability Exposure (CVE) ID: CVE-2010-0688 http://www.exploit-db.com/exploits/13940 http://www.corelan.be:8800/index.php/forum/security-advisories/corelan-10-011-orbital-viewer-orb-buffer-overflow/ http://www.securityfocus.com/bid/38436 BugTraq ID: 40985 http://www.securityfocus.com/bid/40985 http://www.osvdb.org/62580 http://secunia.com/advisories/38720 http://www.vupen.com/english/advisories/2010/0478 XForce ISS Database: orbitalviewer-ov-bo(59560) http://xforce.iss.net/xforce/xfdb/59560 |
| Copyright | Copyright (C) 2010 SecPod |
| This is only one of 32582 vulnerability tests in our test suite. Find out more about running a complete security audit. To run a free test of this vulnerability against your system, register below. |
|