CVE-2007-2222

Multiple buffer overflows in the (1) ActiveListen (Xlisten.dll) and (2) ActiveVoice (Xvoice.dll) speech controls, as used by Microsoft Internet Explorer 5.01, 6, and 7, allow remote attackers to execute arbitrary code via a crafted ActiveX object that triggers memory corruption, as demonstrated via the ModeName parameter to the FindEngine function in ACTIVEVOICEPROJECTLib.DirectSS.
References
Link Resource
http://osvdb.org/35353
http://retrogod.altervista.org/win_speech_2k_sp4.html
http://retrogod.altervista.org/win_speech_xp_sp2.html
http://secunia.com/advisories/25627 Vendor Advisory
http://securitytracker.com/id?1018235
http://www.exploit-db.com/exploits/4065
http://www.kb.cert.org/vuls/id/507433 US Government Resource
http://www.securityfocus.com/archive/1/471947/100/0/threaded
http://www.securityfocus.com/archive/1/471947/100/0/threaded
http://www.securityfocus.com/bid/24426
http://www.us-cert.gov/cas/techalerts/TA07-163A.html US Government Resource
http://www.vupen.com/english/advisories/2007/2153 Vendor Advisory
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2007/ms07-033
https://exchange.xforce.ibmcloud.com/vulnerabilities/34630
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A2031
http://osvdb.org/35353
http://retrogod.altervista.org/win_speech_2k_sp4.html
http://retrogod.altervista.org/win_speech_xp_sp2.html
http://secunia.com/advisories/25627 Vendor Advisory
http://securitytracker.com/id?1018235
http://www.exploit-db.com/exploits/4065
http://www.kb.cert.org/vuls/id/507433 US Government Resource
http://www.securityfocus.com/archive/1/471947/100/0/threaded
http://www.securityfocus.com/archive/1/471947/100/0/threaded
http://www.securityfocus.com/bid/24426
http://www.us-cert.gov/cas/techalerts/TA07-163A.html US Government Resource
http://www.vupen.com/english/advisories/2007/2153 Vendor Advisory
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2007/ms07-033
https://exchange.xforce.ibmcloud.com/vulnerabilities/34630
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A2031
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:microsoft:windows_2000:*:sp4:*:*:*:*:*:*
OR cpe:2.3:a:microsoft:internet_explorer:5.01:sp4:*:*:*:*:*:*
cpe:2.3:a:microsoft:internet_explorer:6:sp1:*:*:*:*:*:*

Configuration 2 (hide)

AND
OR cpe:2.3:o:microsoft:windows_2003_server:sp1:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_2003_server:sp2:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_xp:*:*:professional_x64:*:*:*:*:*
cpe:2.3:o:microsoft:windows_xp:*:sp2:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_xp:*:sp2:professional_x64:*:*:*:*:*
OR cpe:2.3:a:microsoft:internet_explorer:6:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:internet_explorer:7.0:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
OR cpe:2.3:o:microsoft:windows_2003_server:*:*:x64:*:*:*:*:*
cpe:2.3:o:microsoft:windows_2003_server:*:sp2:x64:*:*:*:*:*
cpe:2.3:o:microsoft:windows_2003_server:sp1:*:itanium:*:*:*:*:*
cpe:2.3:o:microsoft:windows_2003_server:sp2:*:itanium:*:*:*:*:*
OR cpe:2.3:a:microsoft:internet_explorer:6:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:internet_explorer:7.0:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
OR cpe:2.3:o:microsoft:windows_vista:*:gold:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_vista:*:gold:x64:*:*:*:*:*
cpe:2.3:a:microsoft:internet_explorer:7.0:*:*:*:*:*:*:*

History

21 Nov 2024, 00:30

Type Values Removed Values Added
References () http://osvdb.org/35353 - () http://osvdb.org/35353 -
References () http://retrogod.altervista.org/win_speech_2k_sp4.html - () http://retrogod.altervista.org/win_speech_2k_sp4.html -
References () http://retrogod.altervista.org/win_speech_xp_sp2.html - () http://retrogod.altervista.org/win_speech_xp_sp2.html -
References () http://secunia.com/advisories/25627 - Vendor Advisory () http://secunia.com/advisories/25627 - Vendor Advisory
References () http://securitytracker.com/id?1018235 - () http://securitytracker.com/id?1018235 -
References () http://www.exploit-db.com/exploits/4065 - () http://www.exploit-db.com/exploits/4065 -
References () http://www.kb.cert.org/vuls/id/507433 - US Government Resource () http://www.kb.cert.org/vuls/id/507433 - US Government Resource
References () http://www.securityfocus.com/archive/1/471947/100/0/threaded - () http://www.securityfocus.com/archive/1/471947/100/0/threaded -
References () http://www.securityfocus.com/bid/24426 - () http://www.securityfocus.com/bid/24426 -
References () http://www.us-cert.gov/cas/techalerts/TA07-163A.html - US Government Resource () http://www.us-cert.gov/cas/techalerts/TA07-163A.html - US Government Resource
References () http://www.vupen.com/english/advisories/2007/2153 - Vendor Advisory () http://www.vupen.com/english/advisories/2007/2153 - Vendor Advisory
References () https://docs.microsoft.com/en-us/security-updates/securitybulletins/2007/ms07-033 - () https://docs.microsoft.com/en-us/security-updates/securitybulletins/2007/ms07-033 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/34630 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/34630 -
References () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A2031 - () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A2031 -

Information

Published : 2007-06-12 19:30

Updated : 2024-11-21 00:30


NVD link : CVE-2007-2222

Mitre link : CVE-2007-2222

CVE.ORG link : CVE-2007-2222


JSON object : View

Products Affected

microsoft

  • windows_vista
  • windows_xp
  • windows_2000
  • windows_2003_server
  • internet_explorer
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer