Facebook Photo Uploader Control Remote Buffer Overflow Vulnerabilities
Multiple vulnerabilities have been identified in Facebook Photo Uploader, which could be exploited by remote attackers to cause a denial of service or take complete control of an affected system. These issues are caused by buffer overflow errors in the "ImageUploader4.ocx" ActiveX control when processing overly long arguments passed to certain methods or properties (e.g. "ExtractExif" or "ExtractIptc"), which could be exploited by remote attackers to execute arbitrary code by tricking a user into visiting a specially crafted web page.
- Denial of Service
- Remote Code Execution
System / Technologies affected
- Facebook Photo Uploader version 188.8.131.52 and prior
Before installation of the software, please visit the software manufacturer web-site for more details.
Upgrade to Facebook Photo Uploader version 184.108.40.206 :
- No CVE information is available