Secunia Logo
 
CVE Reference: CVE-2006-3961
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2006-3961

Description:
Buffer overflow in McSubMgr ActiveX control (mcsubmgr.dll) in McAfee Security Center 6.0.23 for Internet Security Suite 2006, Wireless Home Network Security, Personal Firewall Plus, VirusScan, Privacy Service, SpamKiller, AntiSpyware, and QuickClean allows remote user-assisted attackers to execute arbitrary commands via long string parameters, which are later used in vsprintf.

CVE Status:
Candidate

References:

ST
  1016614

SAID
  Secunia Advisory: SA21264

OSVDB
  27698

MISC
  http://www.eeye.com/html/research/advisories/AD2006807.html
  http://www.eeye.com/html/research/upcoming/20060719.html

CONFIRM
  http://ts.mcafeehelp.com/faq3.asp?docid=407052

CERT-VN
  481212

BUGTRAQ
  http://www.securityfocus.com/archive/1/archive/1/442495/100/100/threaded

BID
  19265


Return to the previous page.