| |||||||||||||
| Test ID: | 1.3.6.1.4.1.25623.1.0.801426 |
| Category: | Buffer overflow |
| Title: | Subtitle Translation Wizard '.srt' File Stack Based Buffer Overflow Vulnerability |
| Summary: | Check for the version of Subtitle Translation Wizard |
| Description: | Overview: This host is installed with Subtitle Translation Wizard and is prone to buffer overflow vulnerability. Vulnerability Insight: The flaw exists due to a boundary error when processing subtitle files in 'st-wizard.exe', which causes a stack-based buffer overflow via '.srt' file containing an overly long string. Impact: Successful exploitation will allow remote attackers to execute arbitrary code. Failed exploit attempts will result in denial-of-service conditions. Impact Level: Application. Affected Software: Subtitle Translation Wizard 3.0 Fix: No solution or patch is available as of 13th, August 2010 . Information regarding this issue will be updated once the solution details are available. For updates refer to http://www.upredsun.com/subtitle-translation/subtitle-translation.html References: http://osvdb.org/65678 http://secunia.com/advisories/40303 http://www.exploit-db.com/exploits/13965/ |
| Cross-Ref: |
BugTraq ID: 41026 Common Vulnerability Exposure (CVE) ID: CVE-2010-2440 http://www.exploit-db.com/exploits/13965 http://www.securityfocus.com/bid/41026 http://osvdb.org/65678 http://secunia.com/advisories/40303 |
| Copyright | Copyright (c) 2010 Greenbone Networks GmbH |
| This is only one of 32582 vulnerability tests in our test suite. Find out more about running a complete security audit. To run a free test of this vulnerability against your system, register below. |
|