Skip to main content

Facebook Photo Uploader Control Remote Buffer Overflow Vulnerabilities

Last Update Date: 28 Jan 2011 Release Date: 5 Feb 2008 4508 Views

RISK: Medium Risk

Multiple vulnerabilities have been identified in Facebook Photo Uploader, which could be exploited by remote attackers to cause a denial of service or take complete control of an affected system. These issues are caused by buffer overflow errors in the "ImageUploader4.ocx" ActiveX control when processing overly long arguments passed to certain methods or properties (e.g. "ExtractExif" or "ExtractIptc"), which could be exploited by remote attackers to execute arbitrary code by tricking a user into visiting a specially crafted web page.


  • Denial of Service
  • Remote Code Execution

System / Technologies affected

  • Facebook Photo Uploader version and prior


Before installation of the software, please visit the software manufacturer web-site for more details.

Upgrade to Facebook Photo Uploader version :

Vulnerability Identifier

  • No CVE information is available


Related Link