CVE-2006-3134 Information

Description

Buffer overflow in GraceNote CDDBControl ActiveX Control as used by multiple products that use Gracenote CDDB allows remote attackers to execute arbitrary code via a long option string.

Reference

http://europe.nokia.com/nokia/09303400.html http://lists.grok.org.uk/pipermail/full-disclosure/2006-June/047420.html http://secunia.com/advisories/20861 http://secunia.com/advisories/20862 http://securitytracker.com/id?1016389 http://www.gracenote.com/sec062706/SonySecurityNotification.html http://www.kb.cert.org/vuls/id/701121 http://www.osvdb.org/26874 http://www.securityfocus.com/bid/18678 http://www.vupen.com/english/advisories/2006/2562 http://www.vupen.com/english/advisories/2006/2563 http://www.zerodayinitiative.com/advisories/ZDI-06-019.html https://exchange.xforce.ibmcloud.com/vulnerabilities/27416

Share on: