Check Point Reference: | CPAI-2008-058 |
Date Published: | 16 Apr 2008 |
Severity: | High |
Last Updated: | Tuesday 01 January, 2008 |
Source: | SecurityFocus: 27756 |
Protection Provided by: | |
Who is Vulnerable? | Facebook Photo Uploader 4.5.57.0 and prior |
Vulnerability Description | A buffer overflow vulnerability has been reported in the Facebook Photo Uploader ActiveX control. Facebook is a social networking website that allows users to upload albums and photos. By convincing a user to visit a specially crafted Web page, a remote attacker may trigger this vulnerability to execute arbitrary code on an affected system. |
Vulnerability Details | The vulnerability is due to a boundary error in the Facebook Photo Uploader ActiveX control FileMask method. To trigger this issue, an attacker may create a malicious web page that will exploit this vulnerability. Successful exploitation may allow execution of arbitrary code on a vulnerable system. |