Description
Stack-based buffer overflow in the NCTAudioFile2.AudioFile ActiveX control (NCTAudioFile2.dll), as used by multiple products, allows remote attackers to execute arbitrary code via a long argument to the SetFormatLikeSample function. NOTE: the products include (1) NCTsoft NCTAudioStudio, NCTAudioEditor, and NCTDialogicVoice; (2) Magic Audio Recorder, Music Editor, and Audio Converter; (3) Aurora Media Workshop; DB Audio Mixer And Editor; (4) J. Hepple Products including Fx Audio Editor and others; (5) EXPStudio Audio Editor; (6) iMesh; (7) Quikscribe; (8) RMBSoft AudioConvert and SoundEdit Pro 2.1; (9) CDBurnerXP; (10) Code-it Software Wave MP3 Editor and aBasic Editor; (11) Movavi VideoMessage, DVD to iPod, and others; (12) SoftDiv Software Dexster, iVideoMAX, and others; (13) Sienzo Digital Music Mentor (DMM); (14) MP3 Normalizer; (15) Roemer Software FREE and Easy Hi-Q Recorder, and Easy Hi-Q Converter; (16) Audio Edit Magic; (17) Joshua Video and Audio Converter; (18) Virtual CD; (19) Cheetah CD and DVD Burner; (20) Mystik Media AudioEdit Deluxe, Blaze Media, and others; (21) Power Audio Editor; (22) DanDans Digital Media Full Audio Converter, Music Editing Master, and others; (23) Xrlly Software Text to Speech Makerand Arial Sound Recorder / Audio Converter; (24) Absolute Sound Recorder, Video to Audio Converter, and MP3 Splitter; (25) Easy Ringtone Maker; (26) RecordNRip; (27) McFunSoft iPod Audio Studio, Audio Recorder for Free, and others; (28) MP3 WAV Converter; (29) BearShare 6.0.2.26789; and (30) Oracle Siebel SimBuilder and CRM 7.x.
Affected products
- altdo / convert_mp3_master1.1 – 1.1
- altdo / mp3_record_and_edit_audio_master1.2 – 1.2
- americanshareware / mp3_wav_converter3.1.8 – 3.1.8
- audio_edit_magic / audio_edit_magic9.2.3_389 – 9.2.3_389
- bearshare / bearshare6.0.2.26789 – 6.0.2.26789
- cdburnerxp / cdburnerxp_pro3.0.116 – 3.0.116
- cheetahburner / cheetah_cd_burner3.56 – 3.56
- cheetahburner / cheetah_dvd_burner1.79 – 1.79
- code-it_softare / abasic_editor10.1 – 10.1
- code-it_softare / wave_mp3_editor10.1 – 10.1
- dandans_digital_media_products / easy_audio_editor7.4 – 7.4
- dandans_digital_media_products / full_audio_converter4.2 – 4.2
- dandans_digital_media_products / music_editing_master5.2 – 5.2
- dandans_digital_media_products / visual_video_converter4.4 – 4.4
- digital_borneo / audio_mixer_and_editor1.1.0 – 1.1.0
- easy_ringtone_maker / easy_ringtone_maker2.0.5 – 2.0.5
- expstudio / audio_editor4.0.2 – 4.0.2
- iaudiosoft.com / absolute_mp3_splitter2.5.4 – 2.5.4
- iaudiosoft.com / absolute_sound_recorder3.4.5 – 3.4.5
- iaudiosoft.com / absolute_video_to_audio_converter2.7.9 – 2.7.9
- imesh.com / imesh7.0.2.26789 – 7.0.2.26789
- j_hepple_products / fx_audio_concat1.2.0_beta – 1.2.0_beta
- j_hepple_products / fx_audio_editor4.7.11 – 4.7.11
- j_hepple_products / fx_audio_tools7.3.4 – 7.3.4
- j_hepple_products / fx_magic_music5.7.7 – 5.7.7
- j_hepple_products / fx_movie_joiner6.2.8 – 6.2.8
- j_hepple_products / fx_movie_joiner_and_splitter6.2.8 – 6.2.8
- j_hepple_products / fx_movie_splitter6.4.7 – 6.4.7
- j_hepple_products / fx_new_sound5.1.1 – 5.1.1
- j_hepple_products / fx_video_converter7.51.21 – 7.51.21
- joshua_mediasoft / audio_convertor_plus2.2 – 2.2
- joshua_mediasoft / video_converter_plus3.01 – 3.01
- magicvideosoftare / magic_audio_converter8.2.6_build_719 – 8.2.6_build_719
- magicvideosoftare / magic_audio_recorder5.3.7 – 5.3.7
- magicvideosoftare / magic_music_editor5.2.2 – 5.2.2
- mcfunsoft / audio_editor6.3.3_build_489 – 6.3.3_build_489
- mcfunsoft / audio_recorder_for_free6.1 – 6.1
- mcfunsoft / audio_studio6.6.3_build_479 – 6.6.3_build_479
- mcfunsoft / ipod_audio_studio6.2.4 – 6.2.4
- mcfunsoft / ipod_music_converter5.1 – 5.1
- mcfunsoft / recording_to_ipod_solution5.1 – 5.1
- mediatox / aurora_media_workshop3.3.25 – 3.3.25
- movavi / chiliburner2.3 – 2.3
- movavi / convertmovie4.4 – 4.4
- movavi / dvd_to_ipod1.0 – 1.0
- movavi / splitmovie1.4 – 1.4
- movavi / suite3.5 – 3.5
- movavi / videomessage1.0 – 1.0
- mp3-soft / mp3_normalizer1.03 – 1.03
- mystik_media_products / audioedit_deluxe4.10 – 4.10
- mystik_media_products / blaze_mediaconvert3.4 – 3.4
- mystik_media_products / blaze_media_pro7.0 – 7.0
- mystik_media_products / contextconvert_pro3.1 – 3.1
- nctsoft_products / nctaudioeditor2.7.1 – 2.7.1
- nctsoft_products / nctaudiofile2
- nctsoft_products / nctaudiostudio2.7.1 – 2.7.1
- nctsoft_products / nctdialogicvoice2.7.1 – 2.7.1
- nextlevel_systems / audio_editor_gold9.2.5_build_424 – 9.2.5_build_424
- nextlevel_systems / audio_studio_gold7.0.1.1_build_500 – 7.0.1.1_build_500
- quikscribe / quikscribe_player5.022.05 – 5.022.05
- quikscribe / quikscribe_recorder5.021.29 – 5.021.29
- recordnrip / recordnrip1.0 – 1.0
- rmbsoft / audioconvert3.1.0.125 – 3.1.0.125
- rmbsoft / soundedit_pro2.1 – 2.1
- roemer_software / easy_hi-q_converter1.7 – 1.7
- roemer_software / easy_hi-q_recorder2.0 – 2.0
- roemer_software / free_hi-q_recorder1.9 – 1.9
- sienzo / digital_music_mentor2.6.0.3 – 2.6.0.3
- smart_media_systems / power_audio_editor11.0.1 – 11.0.1
- softdiv_softare / dexster3.0 – 3.0
- softdiv_softare / ivideomax3.9 – 3.9
- softdiv_softare / mp3_to_wav_converter3.0 – 3.0
- softdiv_softare / snosh1.4 – 1.4
- softdiv_softare / videozilla2.5 – 2.5
- virtual_cd / virtual_cd6.0.0.7 – 6.0.0.7
- virtual_cd / virtual_cd7.1.0.2 – 7.1.0.2
- virtual_cd / virtual_cd8.0.0.6 – 8.0.0.6
- virtual_cd / virtual_cd_file_server7.1.0.3 – 7.1.0.3
- xrlly_software / arial_audio_converter2.3.40 – 2.3.40
- xrlly_software / arial_sound_recorder1.4.3 – 1.4.3
- xrlly_software / text_to_speech_maker1.3.8 – 1.3.8
- xwaver.com / magic_audio_editor_pro10.3.1_build_476 – 10.3.1_build_476
- xwaver.com / magic_music_studio_pro7.0.2.1_build_500 – 7.0.2.1_build_500
References
- VENDOR_ADVISORYhttp://secunia.com/advisories/23546
- MISChttp://www.securityfocus.com/bid/23892
- MISChttp://secunia.com/secunia_research/2007-7/advisory/
- VENDOR_ADVISORYhttp://secunia.com/advisories/23535
- MISChttps://exchange.xforce.ibmcloud.com/vulnerabilities/31707
- MISChttp://secunia.com/secunia_research/2007-12/advisory/
- VENDOR_ADVISORYhttp://secunia.com/advisories/23562
- MISChttp://secunia.com/secunia_research/2007-27/advisory/
- VENDOR_ADVISORYhttp://secunia.com/advisories/23536
- VENDOR_ADVISORYhttp://secunia.com/advisories/30459
- VENDOR_ADVISORYhttp://secunia.com/advisories/30406
- MISChttp://secunia.com/secunia_research/2007-29/advisory/
- MISChttp://secunia.com/secunia_research/2007-24/advisory/
- MISChttp://secunia.com/secunia_research/2007-8/advisory/
- MISChttp://secunia.com/secunia_research/2007-9/advisory/
- MISChttp://secunia.com/secunia_research/2007-13/advisory/
- MISChttp://secunia.com/secunia_research/2007-20/advisory/
- VENDOR_ADVISORYhttp://secunia.com/advisories/23553
- VENDOR_ADVISORYhttp://secunia.com/advisories/23551
- VENDOR_ADVISORYhttp://secunia.com/advisories/23485
- MISChttp://secunia.com/secunia_research/2007-50/advisory/
- VENDOR_ADVISORYhttp://secunia.com/advisories/23550
- MISChttp://secunia.com/secunia_research/2007-16/advisory/
- VENDOR_ADVISORYhttp://secunia.com/advisories/30447
- MISChttp://secunia.com/secunia_research/2007-28/advisory/
- VENDOR_ADVISORYhttp://secunia.com/advisories/23541
- VENDOR_ADVISORYhttp://secunia.com/advisories/26046
- VENDOR_ADVISORYhttp://secunia.com/advisories/23534
- MISChttp://secunia.com/secunia_research/2007-15/advisory/
- MISChttp://secunia.com/secunia_research/2007-10/advisory/
- MISChttp://secunia.com/secunia_research/2007-4/advisory/
- MISChttp://secunia.com/secunia_research/2007-18/advisory/
- MISChttp://secunia.com/secunia_research/2007-23/advisory/
- VENDOR_ADVISORYhttp://secunia.com/advisories/23516
- MISChttp://secunia.com/secunia_research/2007-14/advisory/
- MISChttp://secunia.com/secunia_research/2007-19/advisory/
- VENDOR_ADVISORYhttp://secunia.com/advisories/25993
- MISChttp://secunia.com/secunia_research/2007-17/advisory/
- MISChttp://secunia.com/secunia_research/2007-31/advisory/
- VENDOR_ADVISORYhttp://secunia.com/advisories/23495
- MISChttp://secunia.com/secunia_research/2007-32/advisory/
- VENDOR_ADVISORYhttp://secunia.com/advisories/23558
- MISChttp://secunia.com/secunia_research/2007-33/advisory/
- VENDOR_ADVISORYhttp://secunia.com/advisories/23544
- MISChttp://www.securityfocus.com/archive/1/457936/100/200/threaded
- VENDOR_ADVISORYhttp://secunia.com/advisories/23530
- VENDOR_ADVISORYhttp://secunia.com/advisories/23795
- MISChttp://secunia.com/secunia_research/2007-3/advisory/
- VENDOR_ADVISORYhttp://secunia.com/advisories/23543
- VENDOR_ADVISORYhttp://secunia.com/advisories/23552
- MISChttp://secunia.com/blog/6/
- VENDOR_ADVISORYhttp://secunia.com/advisories/23475
- VENDOR_ADVISORYhttp://secunia.com/advisories/23560
- VENDOR_ADVISORYhttp://secunia.com/advisories/30439
- MISChttp://www.securityfocus.com/archive/1/457940/100/200/threaded
- MISChttp://secunia.com/secunia_research/2007-25/advisory/
- VENDOR_ADVISORYhttp://secunia.com/advisories/26100
- MISChttp://secunia.com/secunia_research/2007-34/advisory/
- MISChttp://www.securityfocus.com/archive/1/457965/100/200/threaded
- MISChttp://secunia.com/secunia_research/2007-21/advisory/
- VENDOR_ADVISORYhttp://secunia.com/advisories/23548
- VENDOR_ADVISORYhttp://secunia.com/advisories/30446
- VENDOR_ADVISORYhttp://secunia.com/advisories/30424
- VENDOR_ADVISORYhttp://secunia.com/advisories/23561
- VENDOR_ADVISORYhttp://secunia.com/advisories/23557
- MISChttp://secunia.com/secunia_research/2007-6/advisory/
- MISChttp://secunia.com/secunia_research/2007-30/advisory/
- VENDOR_ADVISORYhttp://secunia.com/advisories/23745
- VENDOR_ADVISORYhttp://secunia.com/advisories/28407
- VENDOR_ADVISORYhttp://secunia.com/advisories/23493
- VENDOR_ADVISORYhttp://secunia.com/advisories/23511
- VENDOR_ADVISORYhttp://www.vupen.com/english/advisories/2007/0310
- VENDOR_ADVISORYhttp://secunia.com/advisories/23565
- MISChttp://secunia.com/secunia_research/2007-5/advisory/
- MISChttp://secunia.com/secunia_research/2007-11/advisory/
- MISChttp://secunia.com/secunia_research/2007-22/advisory/
- MISChttp://secunia.com/secunia_research/2007-26/advisory/
- VENDOR_ADVISORYhttp://secunia.com/advisories/22922
- VENDOR_ADVISORYhttp://secunia.com/advisories/30450
- MISChttp://secunia.com/secunia_research/2007-2/advisory/
- VENDOR_ADVISORYhttp://secunia.com/advisories/23568
- VENDOR_ADVISORYhttp://secunia.com/advisories/23532
- VENDOR_ADVISORYhttp://secunia.com/advisories/26101
- VENDOR_ADVISORYhttp://secunia.com/advisories/23753
- VENDOR_ADVISORYhttp://secunia.com/advisories/23542
- MISChttp://www.kb.cert.org/vuls/id/292713
- VENDOR_ADVISORYhttp://secunia.com/advisories/23554
- MISChttp://www.securityfocus.com/bid/22196