iPIX.Image.Well.ActiveX.Arguments.Handle.Buffer.Overflow

description-logoDescription

Multiple buffer overflow vulnerabilities in the Internet Pictures Corporation iPIX Image Well ActiveX control (iPIX-ImageWell-ipix.dll) allow remote attackers to execute arbitrary code via unspecified vectors.

affected-products-logoAffected Products

AOL Client Software 9.0 Security.

Impact logoImpact

System compromise.

recomended-action-logoRecommended Actions

Disable the iPIX Image Well ActiveX controls in Internet Explorer.
The vulnerable ActiveX controls can be disabled in Internet Explorer by setting the kill bit for the following CLSIDs:
{ef8d9f2a-f641-4ef0-b2ec-3ba2be7c2960}
{f7a05bac-9778-410a-9cde-bfbd4d5d2b7f}

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2020-12-11 16.978