Attack (Attack ID:405086)

Release Date2010-03-09

Attack NameEXPLOIT Eudora URL Handling buffer overflow -1

Severity

BUG ID

CVE ID

 

Description

Qualcomm Eudora 5.1 allows remote attackers to execute arbitrary code via an HTML e-mail message that uses a file:// URL in a t:video tag to reference an attached Windows Media Player file containing JavaScript code, which is launched and executed in the My Computer zone by Internet Explorer.
Impact: Remote code execution
Affected System: Windows, Linux, FreeBSD, Solaris, Other Unix, Network Device
Additional References: BID:10298,CVE-2002-1770,SA11568

 

Solution

Update vendor's patch.