we care because you do

Indeo Codec Memory Corruption

Indeo Codec Memory Corruption
Posted Dec 9, 2009
Authored by Bing Liu | Site fortinet.com

Fortinet's FortiGuard Labs has discovered a memory corruption vulnerability in Indeo Codec.

tags | advisory
advisories | CVE-2009-4210
MD5 | 357c57c022f96d53aeb55868d373c59b

Indeo Codec Memory Corruption

Change Mirror Download
Fortinet Discovers Vulnerability in Indeo Codec
2009.December.08

Summary:

Fortinet's FortiGuard Labs Discovers Memory Corruption Vulnerability in
Indeo Codec.

Impact:

Remote Code Execution.

Risk:

Critical.

Affected Software:

For a list of operating system and product versions affected, please see the
Microsoft Security Advisory reference below.

Additional Information:

The Indeo codec on systems running Microsoft Windows 2000, Windows XP, and
Windows Server 2003 could allow code to run on users systems when opening
specially crafted content. There are multiple ways that the Indeo codec may
be used and may be required by certain applications. The Indeo codec may be
required when visiting legitimate Web sites, and in corporate environment
line-of-business applications.

Solutions:

* Use the solution provided by Microsoft (Microsoft
<http://www.microsoft.com/technet/security/advisory/954157.MSpx> Security
Advisory 954157).
* FortiGuard Labs released a signature
"MS.Windows.Indeo.Codec.Memory.Corruption", which covers this specific
vulnerability.

FortiGuard Labs continues to monitor attacks against this vulnerability.

Fortinet customers who subscribe to Fortinet's intrusion prevention (IPS)
service should be protected against this memory corruption vulnerability.
Fortinet's IPS service is one component of FortiGuard Subscription Services,
which also offer comprehensive solutions such as antivirus, Web content
filtering and antispam capabilities. These services enable protection
against threats on both application and network layers. FortiGuard Services
are continuously updated by FortiGuard Labs, which enables Fortinet to
deliver a combination of multi-layered security intelligence and true
zero-day protection from new and emerging threats. These updates are
delivered to all FortiGate, FortiMail and FortiClient products. Fortinet
strictly follows responsible disclosure guidelines to ensure optimum
protection during a threat's lifecycle.

References:

* Microsoft Security Advisory:
http://www.microsoft.com/technet/security/advisory/954157.MSpx"
* Microsoft Knowledge Base Article:
http://support.microsoft.com/kb/954157
* CVE ID: CVE-2009-4210
<http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-4210>


Acknowlegement:

* Bing Liu of Fortinet's FortiGuard Labs





Comments

RSS Feed Subscribe to this comment feed

No comments yet, be the first!

Login or Register to post a comment

File Archive:

May 2012

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    May 1st
    37 Files
  • 2
    May 2nd
    53 Files
  • 3
    May 3rd
    33 Files
  • 4
    May 4th
    4 Files
  • 5
    May 5th
    10 Files
  • 6
    May 6th
    17 Files
  • 7
    May 7th
    19 Files
  • 8
    May 8th
    36 Files
  • 9
    May 9th
    34 Files
  • 10
    May 10th
    35 Files
  • 11
    May 11th
    20 Files
  • 12
    May 12th
    18 Files
  • 13
    May 13th
    11 Files
  • 14
    May 14th
    27 Files
  • 15
    May 15th
    58 Files
  • 16
    May 16th
    54 Files
  • 17
    May 17th
    25 Files
  • 18
    May 18th
    53 Files
  • 19
    May 19th
    9 Files
  • 20
    May 20th
    15 Files
  • 21
    May 21st
    25 Files
  • 22
    May 22nd
    32 Files
  • 23
    May 23rd
    35 Files
  • 24
    May 24th
    26 Files
  • 25
    May 25th
    25 Files
  • 26
    May 26th
    11 Files
  • 27
    May 27th
    8 Files
  • 28
    May 28th
    0 Files
  • 29
    May 29th
    0 Files
  • 30
    May 30th
    0 Files
  • 31
    May 31st
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2012 Packet Storm. All rights reserved.

close