AskJeeves.Toolbar.Settings.Plugin.ActiveX.Control.Heap.Overflow

description-logoDescription

This indicates an attempt to exploit a stack based buffer overflow vulnerability in the "AskJeevesToolBar.SettingsPlugin.1" ActiveX control in askBar.dll, part of IAC Search&Media ask.com's Ask Toolbar. The vulnerability allows remote attackers to execute arbitrary code via a long "ShortFormat" property value.

affected-products-logoAffected Products

Ask Jeeves, Ask.com Toolbar 4.0.2.53 and earlier.

Impact logoImpact

System compromise: remote code execution.

recomended-action-logoRecommended Actions

Currently we are not aware of any vendor supplied patches for this issue.

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)