Ourgame.GlobalLink.ChatRoom.ActiveX

NameOurgame.GlobalLink.ChatRoom.ActiveX.Control.Buffer.Overflow
Release DateJan 29, 2008
SeverityCritical
ImpactSystem Compromise: remote attackers can gain control of vulnerable systems.
Denial of service.
DescriptionThis indicates an attempt to exploit a buffer overflow vulnerability in GlobalLink's 'GLChat.ocx' ActiveX control.

The buffer overflow occurs when a long argument is passed to the 'ChatRoom' variable. An attacker can exploit this issue to execute arbitrary code on a target host or cause a denial of service by crashing their web browser.
Affected ProductsGlobalLink 'GLChat.ocx' ActiveX control.
Recommended ActionsUpgrade to the latest version.
Set the kill bit on the vulnerable ActiveX control.
Reference/shttp://www.securityfocus.com/bid/27393 (BugTraq)
Reference: VID-15359