CVE-2015-4647: Buffer Overflow
Multiple stack-based buffer overflows in Ipropsapi in Panasonic Security API (PS-API) ActiveX SDK before 8.10.18 allow remote attackers to execute arbitrary code via a long string in the (1) FilePassword property or to the (2) GetStringInfo method.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2015-4647?
CVE-2015-4647 has a critical severity rating due to its potential for remote code execution.
How do I fix CVE-2015-4647?
To fix CVE-2015-4647, upgrade to the latest version of the Panasonic Security API ActiveX SDK, specifically version 8.10.18 or later.
What types of attacks can be executed using CVE-2015-4647?
CVE-2015-4647 can allow remote attackers to execute arbitrary code through specially crafted input.
Which versions of Panasonic Security API ActiveX SDK are affected by CVE-2015-4647?
CVE-2015-4647 affects all versions of Panasonic Security API ActiveX SDK up to and including 8.10.14.
What properties in Panasonic Security API ActiveX SDK are vulnerable according to CVE-2015-4647?
The vulnerable properties in CVE-2015-4647 include the FilePassword property and the GetStringInfo method.