SAP AG SAPgui 'sapirrfc.dll' ActiveX Control Buffer Overflow Vulnerability(情報元のブックマーク数)

SAPguiのActiveXDoSを受ける脆弱性が存在との事。

SAP AG SAPgui is prone to a remote buffer-overflow vulnerability.

Attackers can exploit this issue to execute arbitrary code within the context of an application that uses the ActiveX control (typically Internet Explorer). Failed exploit attempts will result in a denial-of-service condition.

SAPgui 6.4 is vulnerable; other versions may also be affected.

http://www.securityfocus.com/bid/35256/discuss

screenshot