CVE-2007-0018
9.3
Vector
AV:N/AC:M/Au:N/C:C/I:C/A:C
Exploitability: 8.6 / Impact: 10.0
Source: NVD
Description
Stack-based buffer overflow in the NCTAudioFile2.AudioFile ActiveX control (NCTAudioFile2.dll), as used by multiple products, allows remote attackers to execute arbitrary code via a long argument to the SetFormatLikeSample function. NOTE: the products include (1) NCTsoft NCTAudioStudio, NCTAudioEditor, and NCTDialogicVoice; (2) Magic Audio Recorder, Music Editor, and Audio Converter; (3) Aurora Media Workshop; DB Audio Mixer And Editor; (4) J. Hepple Products including Fx Audio Editor and others; (5) EXPStudio Audio Editor; (6) iMesh; (7) Quikscribe; (8) RMBSoft AudioConvert and SoundEdit Pro 2.1; (9) CDBurnerXP; (10) Code-it Software Wave MP3 Editor and aBasic Editor; (11) Movavi VideoMessage, DVD to iPod, and others; (12) SoftDiv Software Dexster, iVideoMAX, and others; (13) Sienzo Digital Music Mentor (DMM); (14) MP3 Normalizer; (15) Roemer Software FREE and Easy Hi-Q Recorder, and Easy Hi-Q Converter; (16) Audio Edit Magic; (17) Joshua Video and Audio Converter; (18) Virtual CD; (19) Cheetah CD and DVD Burner; (20) Mystik Media AudioEdit Deluxe, Blaze Media, and others; (21) Power Audio Editor; (22) DanDans Digital Media Full Audio Converter, Music Editing Master, and others; (23) Xrlly Software Text to Speech Makerand Arial Sound Recorder / Audio Converter; (24) Absolute Sound Recorder, Video to Audio Converter, and MP3 Splitter; (25) Easy Ringtone Maker; (26) RecordNRip; (27) McFunSoft iPod Audio Studio, Audio Recorder for Free, and others; (28) MP3 WAV Converter; (29) BearShare 6.0.2.26789; and (30) Oracle Siebel SimBuilder and CRM 7.x.
Affected (83)
Products: Altdo: Convert Mp3 Master, Mp3 Record And Edit Audio Master · Americanshareware: Mp3 Wav Converter · Audio Edit Magic: Audio Edit Magic · +30 more
Show all products
Altdo: Convert Mp3 Master, Mp3 Record And Edit Audio Master · Americanshareware: Mp3 Wav Converter · Audio Edit Magic: Audio Edit Magic · Bearshare: Bearshare · Cdburnerxp: Cdburnerxp Pro · Cheetahburner: Cheetah Cd Burner, Cheetah Dvd Burner · Code It Softare: Abasic Editor, Wave Mp3 Editor · Dandans Digital Media Products: Easy Audio Editor, Full Audio Converter, Music Editing Master, Visual Video Converter · Digital Borneo: Audio Mixer And Editor · Easy Ringtone Maker: Easy Ringtone Maker · Expstudio: Audio Editor · Iaudiosoft.com: Absolute Mp3 Splitter, Absolute Sound Recorder, Absolute Video To Audio Converter · Imesh.com: Imesh · J Hepple Products: Fx Audio Concat, Fx Audio Editor, Fx Audio Tools, Fx Magic Music, Fx Movie Joiner, Fx Movie Joiner And Splitter, Fx Movie Splitter, Fx New Sound, Fx Video Converter · Joshua Mediasoft: Audio Convertor Plus, Video Converter Plus · Magicvideosoftare: Magic Audio Converter, Magic Audio Recorder, Magic Music Editor · Mcfunsoft: Audio Editor, Audio Recorder For Free, Audio Studio, Ipod Audio Studio, Ipod Music Converter, Recording To Ipod Solution · Mediatox: Aurora Media Workshop · Movavi: Chiliburner, Convertmovie, Dvd To Ipod, Splitmovie, Suite, Videomessage · Mp3 Soft: Mp3 Normalizer · Mystik Media Products: Audioedit Deluxe, Blaze Media Pro, Blaze Mediaconvert, Contextconvert Pro · Nctsoft Products: Nctaudioeditor, Nctaudiofile2, Nctaudiostudio, Nctdialogicvoice · Nextlevel Systems: Audio Editor Gold, Audio Studio Gold · Quikscribe: Quikscribe Player, Quikscribe Recorder · Recordnrip: Recordnrip · Rmbsoft: Audioconvert, Soundedit Pro · Roemer Software: Easy Hi Q Converter, Easy Hi Q Recorder, Free Hi Q Recorder · Sienzo: Digital Music Mentor · Smart Media Systems: Power Audio Editor · Softdiv Softare: Dexster, Ivideomax, Mp3 To Wav Converter, Snosh, Videozilla · Virtual Cd: Virtual Cd, Virtual Cd File Server · Xrlly Software: Arial Audio Converter, Arial Sound Recorder, Text To Speech Maker · Xwaver.com: Magic Audio Editor Pro, Magic Music Studio Pro
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.1 | |
| Version 1.2 | |
| Version 3.1.8 | |
| Version 9.2.3_389 | |
| Version 6.0.2.26789 | |
| Version 3.0.116 | |
| Version 3.56 | |
| Version 1.79 | |
| Version 10.1 | |
| Version 10.1 | |
| Version 7.4 | |
| Version 4.2 | |
| Version 5.2 | |
| Version 4.4 | |
| Version 1.1.0 | |
| Version 2.0.5 | |
| Version 4.0.2 | |
| Version 2.5.4 | |
| Version 3.4.5 | |
| Version 2.7.9 | |
| Version 7.0.2.26789 | |
| Version 1.2.0_beta | |
| Version 4.7.11 | |
| Version 7.3.4 | |
| Version 5.7.7 | |
| Version 6.2.8 | |
| Version 6.2.8 | |
| Version 6.4.7 | |
| Version 5.1.1 | |
| Version 7.51.21 | |
| Version 2.2 | |
| Version 3.01 | |
| Version 8.2.6_build_719 | |
| Version 5.3.7 | |
| Version 5.2.2 | |
| Version 6.3.3_build_489 | |
| Version 6.1 | |
| Version 6.6.3_build_479 | |
| Version 6.2.4 | |
| Version 5.1 | |
| Version 5.1 | |
| Version 3.3.25 | |
| Version 2.3 | |
| Version 4.4 | |
| Version 1.0 | |
| Version 1.4 | |
| Version 3.5 | |
| Version 1.0 | |
| Version 1.03 | |
| Version 4.10 | |
| Version 7.0 | |
| Version 3.4 | |
| Version 3.1 | |
| Version 2.7.1 | |
| All versions | |
| Version 2.7.1 | |
| Version 2.7.1 | |
| Version 9.2.5_build_424 | |
| Version 7.0.1.1_build_500 | |
| Version 5.022.05 | |
| Version 5.021.29 | |
| Version 1.0 | |
| Version 3.1.0.125 | |
| Version 2.1 | |
| Version 1.7 | |
| Version 2.0 | |
| Version 1.9 | |
| Version 2.6.0.3 | |
| Version 11.0.1 | |
| Version 3.0 | |
| Version 3.9 | |
| Version 3.0 | |
| Version 1.4 | |
| Version 2.5 | |
| Version 6.0.0.7 | |
| Version 7.1.0.3 | |
| Version 2.3.40 | |
| Version 1.4.3 | |
| Version 1.3.8 | |
| Version 10.3.1_build_476 | |
| Version 7.0.2.1_build_500 |
References (176)
Source: PSIRT-CNA@flexerasoftware.com
Source: PSIRT-CNA@flexerasoftware.com
Source: PSIRT-CNA@flexerasoftware.com
Source: PSIRT-CNA@flexerasoftware.com
Source: PSIRT-CNA@flexerasoftware.com
Source: PSIRT-CNA@flexerasoftware.com
Source: PSIRT-CNA@flexerasoftware.com
Source: PSIRT-CNA@flexerasoftware.com
Source: PSIRT-CNA@flexerasoftware.com
Source: PSIRT-CNA@flexerasoftware.com
Source: PSIRT-CNA@flexerasoftware.com
Source: PSIRT-CNA@flexerasoftware.com
Source: PSIRT-CNA@flexerasoftware.com
Source: PSIRT-CNA@flexerasoftware.com
Source: PSIRT-CNA@flexerasoftware.com
Source: PSIRT-CNA@flexerasoftware.com
Source: PSIRT-CNA@flexerasoftware.com
Source: PSIRT-CNA@flexerasoftware.com
Source: PSIRT-CNA@flexerasoftware.com
Source: PSIRT-CNA@flexerasoftware.com
Source: PSIRT-CNA@flexerasoftware.com
Source: PSIRT-CNA@flexerasoftware.com
Source: PSIRT-CNA@flexerasoftware.com
Source: PSIRT-CNA@flexerasoftware.com
Source: PSIRT-CNA@flexerasoftware.com
Source: PSIRT-CNA@flexerasoftware.com
Source: PSIRT-CNA@flexerasoftware.com
Source: PSIRT-CNA@flexerasoftware.com
Source: PSIRT-CNA@flexerasoftware.com
Source: PSIRT-CNA@flexerasoftware.com
Source: PSIRT-CNA@flexerasoftware.com
Vendor Advisory
Source: PSIRT-CNA@flexerasoftware.com
Vendor Advisory
Source: PSIRT-CNA@flexerasoftware.com
Vendor Advisory
Source: PSIRT-CNA@flexerasoftware.com
Vendor Advisory
Source: PSIRT-CNA@flexerasoftware.com
Vendor Advisory
Source: PSIRT-CNA@flexerasoftware.com
Vendor Advisory
Source: PSIRT-CNA@flexerasoftware.com
Vendor Advisory
Source: PSIRT-CNA@flexerasoftware.com
Vendor Advisory
Source: PSIRT-CNA@flexerasoftware.com
Vendor Advisory
Source: PSIRT-CNA@flexerasoftware.com
Vendor Advisory
Source: PSIRT-CNA@flexerasoftware.com
Vendor Advisory
Source: PSIRT-CNA@flexerasoftware.com
Vendor Advisory
Source: PSIRT-CNA@flexerasoftware.com
Vendor Advisory
Source: PSIRT-CNA@flexerasoftware.com
Vendor Advisory
Source: PSIRT-CNA@flexerasoftware.com
Vendor Advisory
Source: PSIRT-CNA@flexerasoftware.com
Vendor Advisory
Source: PSIRT-CNA@flexerasoftware.com
Vendor Advisory
Source: PSIRT-CNA@flexerasoftware.com
Vendor Advisory
Source: PSIRT-CNA@flexerasoftware.com
Vendor Advisory
Source: PSIRT-CNA@flexerasoftware.com
Vendor Advisory
Source: PSIRT-CNA@flexerasoftware.com
Vendor Advisory
Source: PSIRT-CNA@flexerasoftware.com
Vendor Advisory
Source: PSIRT-CNA@flexerasoftware.com
Vendor Advisory
Source: PSIRT-CNA@flexerasoftware.com
Vendor Advisory
Source: PSIRT-CNA@flexerasoftware.com
Vendor Advisory
Source: PSIRT-CNA@flexerasoftware.com
Vendor Advisory
Source: PSIRT-CNA@flexerasoftware.com
Vendor Advisory
Source: PSIRT-CNA@flexerasoftware.com
Vendor Advisory
Source: PSIRT-CNA@flexerasoftware.com
Vendor Advisory
Source: PSIRT-CNA@flexerasoftware.com
Source: PSIRT-CNA@flexerasoftware.com
Vendor Advisory
Source: PSIRT-CNA@flexerasoftware.com
Vendor Advisory
Source: PSIRT-CNA@flexerasoftware.com
Vendor Advisory
Source: PSIRT-CNA@flexerasoftware.com
Vendor Advisory
Source: PSIRT-CNA@flexerasoftware.com
Source: PSIRT-CNA@flexerasoftware.com
Source: PSIRT-CNA@flexerasoftware.com
Source: PSIRT-CNA@flexerasoftware.com
Source: PSIRT-CNA@flexerasoftware.com
Source: PSIRT-CNA@flexerasoftware.com
Source: PSIRT-CNA@flexerasoftware.com
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
US Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Timeline
No history available yet.