| |||||||||||||
| Test ID: | 1.3.6.1.4.1.25623.1.0.801098 |
| Category: | Buffer overflow |
| Title: | CA eTrust PestPatrol Anti-Spyware 'ppctl.dll' ActiveX Control BOF Vulnerability |
| Summary: | Check for the version of ppctl.dll file and CLSID |
| Description: | Overview: This host is installed with CA eTrust PestPatrol Anti-Spyware and is prone to Buffer Overflow vulnerability. Vulnerability Insight: A Stack-based buffer overflow error in ActiveX control in 'ppctl.dll', which can be caused by persuading a victim to visit a specially-crafted Web page that passes an overly long string argument to the 'Initialize()' method. Impact: Successful exploitation could allow execution of arbitrary code, and cause the victim's browser to crash. Impact Level: Application Affected Software/OS: CA eTrust PestPatrol Anti-Spyware Fix: No solution or patch is available as of 16th December, 2009. Information regarding this issue will updated once the solution details are available. For updates refer to http://www.pestpatrol.com/ Workaround: Set kill bit for the CLSID, {5e644c49-f8b0-4e9a-a2ed-5f176bb18ce6} References: http://xforce.iss.net/xforce/xfdb/54458 http://www.fortiguard.com/encyclopedia/vulnerability/ca.etrust.pestpatrol.ppctl.dll.activex.access.html http://www.metasploit.com/redmine/projects/framework/repository/revisions/7167/entry/modules/exploits/windows/fileformat/etrust_pestscan.rb |
| Cross-Ref: |
BugTraq ID: 37133 Common Vulnerability Exposure (CVE) ID: CVE-2009-4225 http://www.fortiguard.com/encyclopedia/vulnerability/ca.etrust.pestpatrol.ppctl.dll.activex.access.html http://www.metasploit.com/redmine/projects/framework/repository/revisions/7167/entry/modules/exploits/windows/fileformat/etrust_pestscan.rb http://www.securityfocus.com/bid/37133 XForce ISS Database: ca-etrust-activex-bo(54458) http://xforce.iss.net/xforce/xfdb/54458 |
| Copyright | Copyright (c) 2009 Greenbone Networks GmbH |
| This is only one of 32582 vulnerability tests in our test suite. Find out more about running a complete security audit. To run a free test of this vulnerability against your system, register below. |
|