RULE(RULE ID:312069)

Rule General Information
Release Date: 2015-09-15
Rule Name: Panasonic Security API SDK Iprosapi Activex Control Filepassword Buffer Overflow Vulnerability -1 (CVE-2015-4647)
Severity:
CVE ID:
Rule Protection Details
Description: Multiple stack-based buffer overflows in Ipropsapi in Panasonic Security API (PS-API) ActiveX SDK before 8.10.18 allow remote attackers to execute arbitrary code via a long string in the (1) FilePassword property or to the (2) GetStringInfo method.
Impact: A buffer overflow vulnerability can be triggered by an attacker in the context of the vulnerable product. Further attacks include arbitrary code execution and denial of service.
Affected OS: Windows
Reference: SecurityFocusBID:75409
Solutions
More advisories have been published on the website, please visit for more suggestions:
http://support.microsoft.com/kb/240797
http://security.panasonic.com/pss/security/library/developer.html#SDK