Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2006-1172

Overview

Vulnerability Score 5.0 5.0
CVE Id CVE-2006-1172
Last Modified 07 Mar 2011 09:32:15
Published 09 May 2006 06:02:00
Confidentiality Impact NONE NONE
Integrity Impact PARTIAL PARTIAL
Availability Impact NONE NONE
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2006-1172

Summary

Stack-based buffer overflow in the createPKCS10 function in Cryptomathic Cenroll ActiveX Control 1.1.0.0 allows remote attackers to execute arbitrary code via vectors related to the TDC Digital signature.

Vulnerable Systems

Application

  • Tdc Cryptomathic Cenroll Activex Control 1.1.0.0


References

OSVDB - 25282

SECTRACK - 1016034

SECUNIA - 19968

VUPEN - ADV-2006-1675

BID - 17852

BUGTRAQ - 20060505 Cryptomathic ActiveX Buffer Overflow (TDC Digital signature)

MISC - http://cirt.dk/advisories/cirt-43-advisory.pdf

XF - cryptomathic-primeink-createpkcs10-bo(26255)


Last Updated: 27 May 2016 10:41:58