CVE-2012-4333: Buffer Overflow
Multiple stack-based buffer overflows in the BackupToAvi method in the (1) UMSCtrl 1.5.1.1 and (2) UMSCtrlSTW 2.0.1.0 ActiveX controls in Samsung NET-i viewer 1.37.120316 allow remote attackers to execute arbitrary code via a long string in the fname parameter. NOTE: some of these details are obtained from third party information.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-4333?
The severity of CVE-2012-4333 is rated as high due to its potential for remote code execution.
How do I fix CVE-2012-4333?
To fix CVE-2012-4333, users should update to the latest version of Samsung NET-i viewer that addresses this vulnerability.
What products are affected by CVE-2012-4333?
CVE-2012-4333 affects Samsung NET-i viewer version 1.37.120316 and the associated ActiveX controls.
Can CVE-2012-4333 be exploited remotely?
Yes, CVE-2012-4333 can be exploited remotely by an attacker using a malicious string in the fname parameter.
What types of attacks are possible with CVE-2012-4333?
Exploiting CVE-2012-4333 can lead to arbitrary code execution on the affected system.