CVE-2012-0985: Buffer Overflow

Published Jun 7, 2012
·
Updated

Multiple buffer overflows in the Wireless Manager ActiveX control 4.0.0.0 in WifiMan.dll in Sony VAIO PC Wireless LAN Wizard 1.0; VAIO Wireless Wizard 1.00, 1.0064, 1.0.1, 2.0, and 3.0; SmartWi Connection Utility 4.7, 4.7.4, 4.8, 4.9, 4.10, and 4.11; and VAIO Easy Connect software 1.0.0 and 1.1.0 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long string in the second argument of the (1) SetTmpProfileOption or (2) ConnectToNetwork method.

Affected Software

14 affected components
Sony Smartwi Connection Utillity=4.7
Sony Smartwi Connection Utillity=4.7.4
Sony Smartwi Connection Utillity=4.8
Sony Smartwi Connection Utillity=4.9
Sony Smartwi Connection Utillity=4.10
Sony Smartwi Connection Utillity=4.11
Sony VAIO Easy Connect=1.0.0
Sony VAIO Easy Connect=1.1.0
Sony VAIO PC Wireless LAN Wizard=1.0
Sony VAIO Wireless Wizard=1.00
Sony VAIO Wireless Wizard=1.00_64
Sony VAIO Wireless Wizard=1.01
Sony VAIO Wireless Wizard=2.0
Sony VAIO Wireless Wizard=3.0

Event History

Jun 7, 2012
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description

Frequently Asked Questions

1

What is the severity of CVE-2012-0985?

CVE-2012-0985 is classified as a high severity vulnerability due to its potential for buffer overflow exploits.

2

How do I fix CVE-2012-0985?

To fix CVE-2012-0985, update affected software to the latest version provided by Sony that addresses the buffer overflow issues.

3

Which software is affected by CVE-2012-0985?

CVE-2012-0985 affects multiple Sony products including SmartWi Connection Utility and VAIO Wireless Wizard among others.

4

What are the risks associated with CVE-2012-0985?

The risks associated with CVE-2012-0985 include potential remote code execution and unauthorized access impacting system integrity.

5

Is exploitation of CVE-2012-0985 easy to accomplish?

Exploitation of CVE-2012-0985 could be relatively easy for an attacker with knowledge of the vulnerable software and the right exploit available.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203