cvelist/2006/6xxx/CVE-2006-6442.json
2019-03-17 23:26:38 +00:00

102 lines
3.6 KiB
JSON

{
"CVE_data_meta": {
"ASSIGNER": "cve@mitre.org",
"ID": "CVE-2006-6442",
"STATE": "PUBLIC"
},
"affects": {
"vendor": {
"vendor_data": [
{
"product": {
"product_data": [
{
"product_name": "n/a",
"version": {
"version_data": [
{
"version_value": "n/a"
}
]
}
}
]
},
"vendor_name": "n/a"
}
]
}
},
"data_format": "MITRE",
"data_type": "CVE",
"data_version": "4.0",
"description": {
"description_data": [
{
"lang": "eng",
"value": "Stack-based buffer overflow in the SetClientInfo function in the CDDBControlAOL.CDDBAOLControl ActiveX control (cddbcontrol.dll), as used in America Online (AOL) 7.0 4114.563, 8.0 4129.230, and 9.0 Security Edition 4156.910, and possibly other products, allows remote attackers to execute arbitrary code via a long ClientId argument."
}
]
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "n/a"
}
]
}
]
},
"references": {
"reference_data": [
{
"name": "ADV-2006-4904",
"refsource": "VUPEN",
"url": "http://www.vupen.com/english/advisories/2006/4904"
},
{
"name": "21488",
"refsource": "BID",
"url": "http://www.securityfocus.com/bid/21488"
},
{
"name": "20061211 Secunia Research: AOL CDDBControl ActiveX Control\"SetClientInfo()\" Buffer Overflow",
"refsource": "BUGTRAQ",
"url": "http://www.securityfocus.com/archive/1/454105/100/0/threaded"
},
{
"name": "1017357",
"refsource": "SECTRACK",
"url": "http://securitytracker.com/id?1017357"
},
{
"name": "23043",
"refsource": "SECUNIA",
"url": "http://secunia.com/advisories/23043"
},
{
"name": "aol-cddbcontrol-bo(30790)",
"refsource": "XF",
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/30790"
},
{
"name": "20061211 Secunia Research: AOL CDDBControl ActiveX Control \"SetClientInfo()\" Buffer Overflow",
"refsource": "FULLDISC",
"url": "http://lists.grok.org.uk/pipermail/full-disclosure/2006-December/051230.html"
},
{
"name": "http://secunia.com/secunia_research/2006-69/advisory/",
"refsource": "MISC",
"url": "http://secunia.com/secunia_research/2006-69/advisory/"
},
{
"name": "20061211 GraceNote CDDBControl (CVE-2006-3134) = CDDBAOLControl (CVE-2006-6442)",
"refsource": "VIM",
"url": "http://attrition.org/pipermail/vim/2006-December/001173.html"
}
]
}
}