Skip to navigation
Skip to content
Skip to secondary-content
F-Secure
Tools
Choose Location:
APAC HQ
Australia
Belgium - Dutch
Belgium - French
Brazil
Estonia
Finland
France
Germany
Global
Greece
Hong Kong
India
Italy
Japan
Netherlands
New Zealand
Poland
Russia
Slovenia
Sweden
UK
USA
Search
Go
Navigation
Home
Products
eStore
Partners
Support
Downloads
Security
About Us
Subnavigation
Security Center
Security Lab
World Map
Security Lab
Latest Threats
Submit Samples
Tools & Services
Learn More
Where You Are
Home
Security
Security Lab
Latest Threats
Vulnerability Descriptions
SA30456
Crystal MP3 Recorder NCTAudioInformation2.dll ActiveX Control Buffer Overflow
Report ID:
SA30456
Source:
Secunia
Date of Discovery:
30.05.2008
Criticality:
Urgent
Affects:
Crystal MP3 Recorder 1.x
Compromise From:
From remote
Compromise Type:
System access
Summary
A vulnerability has been discovered in Crystal MP3 Recorder, which can be exploited by malicious people to compromise a user's system.
Detailed Description
A vulnerability has been discovered in Crystal MP3 Recorder, which can be exploited by malicious people to compromise a user's system.
For more information:
SA30415
The vulnerability is confirmed in version 1.00. Other versions may also be affected.
Solution
Set the kill-bit for the affected ActiveX control.
CVE Reference
CVE-2008-0959