CVE-2007-4802 Information

Description

Multiple heap-based buffer overflows in GlobalLink 2.7.0.8 allow remote attackers to execute arbitrary code via (1) a long eighth argument to the SetInfo method in a certain ActiveX control in glItemCom.dll or (2) a long second argument to the SetClientInfo method in a certain ActiveX control in glitemflat.dll.

Reference

http://osvdb.org/45886 http://osvdb.org/45887 http://www.securityfocus.com/bid/25565 http://www.securityfocus.com/bid/25586 https://exchange.xforce.ibmcloud.com/vulnerabilities/36470 https://exchange.xforce.ibmcloud.com/vulnerabilities/36501 https://www.exploit-db.com/exploits/4366 https://www.exploit-db.com/exploits/4372

Share on: