PT-2016-2691 · Micro Focus · Micro Focus Rumba+1

Liquidworm

·

Published

2016-07-03

·

Updated

2017-09-03

·

CVE-2016-5228

CVSS v3.1

10

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Micro Focus Rumba versions 9.x through 9.3 before HF 11997 Micro Focus Rumba versions 9.4.x through 9.4 before HF 12815
Description The issue is caused by a stack-based buffer overflow in the PlayMacro function in ObjectXMacro.ObjectXMacro in WdMacCtl.ocx of the Micro Focus Rumba terminal emulator. This can be exploited by a remote attacker to execute arbitrary code using a long MacroName argument.
Recommendations For Micro Focus Rumba versions 9.x through 9.3 before HF 11997, update to version 9.3 HF 11997 or later. For Micro Focus Rumba versions 9.4.x through 9.4 before HF 12815, update to version 9.4 HF 12815 or later. As a temporary workaround, consider restricting the length of the MacroName argument to prevent exploitation until a patch is applied.

Exploit

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2016-02083
CVE-2016-5228

Affected Products

Micro Focus Rumba
Wdmacctl.Ocx