<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>CiscoZine &#187; Buffer overflows</title>
	<atom:link href="http://www.ciscozine.com/tag/buffer-overflows/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.ciscozine.com</link>
	<description>Daily reporting on Cisco technology</description>
	<lastBuildDate>Tue, 14 May 2013 10:33:02 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.5.1</generator>
		<item>
		<title>January 2013: five Cisco vulnerabilities</title>
		<link>http://www.ciscozine.com/2013/02/12/january-2013-five-cisco-vulnerabilities/</link>
		<comments>http://www.ciscozine.com/2013/02/12/january-2013-five-cisco-vulnerabilities/#comments</comments>
		<pubDate>Tue, 12 Feb 2013 12:05:14 +0000</pubDate>
		<dc:creator>Fabio Semperboni</dc:creator>
				<category><![CDATA[Security Advisory]]></category>
		<category><![CDATA[ASA]]></category>
		<category><![CDATA[Buffer overflows]]></category>
		<category><![CDATA[DOS]]></category>
		<category><![CDATA[H.323]]></category>
		<category><![CDATA[Remote Control]]></category>

		<guid isPermaLink="false">http://www.ciscozine.com/?p=1041</guid>
		<description><![CDATA[The Cisco Product Security Incident Response Team (PSIRT) has published five important vulnerability advisories: Portable SDK for UPnP Devices Contains Buffer Overflow Vulnerabilities Multiple Vulnerabilities in Cisco Wireless LAN Controllers Cisco ASA 1000V Cloud Firewall H.323 Inspection Denial of Service Vulnerability Cisco Prime LAN Management Solution Command Execution Vulnerability Cisco Unified IP Phone Local Kernel System Call Input Validation Vulnerability Portable SDK for UPnP Devices Contains Buffer Overflow Vulnerabilities The Portable Software Developer Kit (SDK) for Universal Plug-n-Play (UPnP) Devices contains a libupnp library, originally known as the Intel SDK for UPnP Devices, which is vulnerable to multiple stack-based buffer [...]]]></description>
		<wfw:commentRss>http://www.ciscozine.com/2013/02/12/january-2013-five-cisco-vulnerabilities/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cisco Linksys PlayerPT ActiveX Control Buffer Overflow</title>
		<link>http://www.ciscozine.com/2012/11/15/cisco-linksys-playerpt-activex-control-buffer-overflow/</link>
		<comments>http://www.ciscozine.com/2012/11/15/cisco-linksys-playerpt-activex-control-buffer-overflow/#comments</comments>
		<pubDate>Thu, 15 Nov 2012 08:12:26 +0000</pubDate>
		<dc:creator>Fabio Semperboni</dc:creator>
				<category><![CDATA[Exploit]]></category>
		<category><![CDATA[Buffer overflows]]></category>
		<category><![CDATA[Linksys]]></category>

		<guid isPermaLink="false">http://www.ciscozine.com/?p=1019</guid>
		<description><![CDATA[Cisco Linksys PlayerPT ActiveX is prone to an overflow condition. The SetSource() function fails to properly sanitize user-supplied input resulting in a stack based buffer overflow. With a specially crafted argument, a remote attacker can potentially cause execution of arbitrary code. Solution: Currently, there are no known upgrades or patches to correct this vulnerability. It is possible to correct the flaw by implementing the following workaround: set the kill-bit on the PlayerPT.ocx ActiveX Control [ {9E065E4A-BD9D-4547-8F90-985DC62A5591} ]. See Microsoft KB article 240797 for additional details. Vulnerability (Only for test): ## # This file is part of the Metasploit Framework and [...]]]></description>
		<wfw:commentRss>http://www.ciscozine.com/2012/11/15/cisco-linksys-playerpt-activex-control-buffer-overflow/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cisco Linksys WVC200 Wireless-G PTZ Internet Video Camera buffer overflow</title>
		<link>http://www.ciscozine.com/2012/03/22/cisco-linksys-wvc200-wireless-g-ptz-internet-video-camera-buffer-overflow/</link>
		<comments>http://www.ciscozine.com/2012/03/22/cisco-linksys-wvc200-wireless-g-ptz-internet-video-camera-buffer-overflow/#comments</comments>
		<pubDate>Thu, 22 Mar 2012 19:39:53 +0000</pubDate>
		<dc:creator>Fabio Semperboni</dc:creator>
				<category><![CDATA[Exploit]]></category>
		<category><![CDATA[Buffer overflows]]></category>
		<category><![CDATA[Linksys]]></category>

		<guid isPermaLink="false">http://www.ciscozine.com/?p=944</guid>
		<description><![CDATA[The Cisco Linksys WVC200 Wireless-G PTZ Internet Video Camera PlayerPT ActiveX Control PlayerPT.ocx auffers a buffer overflow vulnerability. When viewing the device web interface it asks to install an ActiveX control with the following settings: ProductName: PlayerPT ActiveX Control Module File version: 1.0.0.15 Binary path: C:\WINDOWS\system32\PlayerPT.ocx CLSID: {9E065E4A-BD9D-4547-8F90-985DC62A5591} ProgID: PLAYERPT.PlayerPTCtrl.1 Safe for scripting (registry): True Safe for initialization (registry): True Vulnerability (Only for test): the SetSource() method is vulnerable to a buffer overflow vulnerability. Quickly, ollydbg dump: ... 03238225   8B5424 20        mov edx,dword ptr ss:[esp+20] 03238229   894424 10        mov dword ptr ss:[esp+10],eax 0323822D   B9 32000000      mov ecx,32 03238232   33C0             xor [...]]]></description>
		<wfw:commentRss>http://www.ciscozine.com/2012/03/22/cisco-linksys-wvc200-wireless-g-ptz-internet-video-camera-buffer-overflow/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>February 2011: nine Cisco vulnerabilities</title>
		<link>http://www.ciscozine.com/2011/03/01/february-2011-nine-cisco-vulnerabilities/</link>
		<comments>http://www.ciscozine.com/2011/03/01/february-2011-nine-cisco-vulnerabilities/#comments</comments>
		<pubDate>Tue, 01 Mar 2011 08:19:29 +0000</pubDate>
		<dc:creator>Fabio Semperboni</dc:creator>
				<category><![CDATA[Security Advisory]]></category>
		<category><![CDATA[Buffer overflows]]></category>
		<category><![CDATA[DOS]]></category>
		<category><![CDATA[Inject data]]></category>
		<category><![CDATA[Remote Control]]></category>

		<guid isPermaLink="false">http://www.ciscozine.com/?p=862</guid>
		<description><![CDATA[The Cisco Product Security Incident Response Team (PSIRT) has published nine important vulnerability advisories: Multiple Vulnerabilities in Cisco TelePresence Multipoint Switch Multiple Vulnerabilities in Cisco TelePresence Manager Multiple Vulnerabilities in Cisco TelePresence Recording Server Multiple Vulnerabilities in Cisco TelePresence Endpoint Devices Cisco Firewall Services Module Skinny Client Control Protocol Inspection Denial of Service Vulnerability Multiple Vulnerabilities in Cisco ASA 5500 Series Adaptive Security Appliances Management Center for Cisco Security Agent Remote Code Execution Vulnerability Default Credentials for Root Account on Tandberg E, EX and C Series Endpoints Multiple Cisco WebEx Player Vulnerabilities Multiple Vulnerabilities in Cisco TelePresence Multipoint Switch Multiple [...]]]></description>
		<wfw:commentRss>http://www.ciscozine.com/2011/03/01/february-2011-nine-cisco-vulnerabilities/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>October 2010: one Cisco vulnerability</title>
		<link>http://www.ciscozine.com/2010/11/03/october-2010-one-cisco-vulnerability/</link>
		<comments>http://www.ciscozine.com/2010/11/03/october-2010-one-cisco-vulnerability/#comments</comments>
		<pubDate>Wed, 03 Nov 2010 10:53:21 +0000</pubDate>
		<dc:creator>Fabio Semperboni</dc:creator>
				<category><![CDATA[Security Advisory]]></category>
		<category><![CDATA[Buffer overflows]]></category>
		<category><![CDATA[DOS]]></category>
		<category><![CDATA[Remote Control]]></category>

		<guid isPermaLink="false">http://www.ciscozine.com/?p=827</guid>
		<description><![CDATA[The Cisco Product Security Incident Response Team (PSIRT) has published one important vulnerability advisory: CiscoWorks Common Services Arbitrary Code Execution Vulnerability CiscoWorks Common Services Arbitrary Code Execution Vulnerability CiscoWorks Common Services for both Oracle Solaris and Microsoft Windows contains a vulnerability that could allow a remote unauthenticated attacker to execute arbitrary code on a host device with privileges of a system administrator. Vulnerable Products CiscoWorks Common Services versions 3.0.5 and later are affected by this vulnerability. Versions 4.0 and later contain the fix. Administrators can check version details and licensing information about CiscoWorks Common Services by clicking the About button [...]]]></description>
		<wfw:commentRss>http://www.ciscozine.com/2010/11/03/october-2010-one-cisco-vulnerability/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
