CVE-2011-5167

Heap-based buffer overflow in the SetDevNames method of the Tidestone Formula One ActiveX control (TTF16.ocx) 6.3.5 Build 1 in Oracle Hyperion Strategic Finance 12.x and possibly earlier allows remote attackers to execute arbitrary code via a long string to the DriverName parameter.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:oracle:hyperion_strategic_finance:11.1.2.1.0:*:*:*:*:*:*:*
cpe:2.3:a:tidestone:formula_one_activex_control:6.3.5.1:*:*:*:*:*:*:*
cpe:2.3:a:oracle:hyperion_strategic_finance:*:*:*:*:*:*:*:*

Information

Published : 2012-09-15 10:55

Updated : 2017-08-28 18:30


NVD link : CVE-2011-5167

Mitre link : CVE-2011-5167


JSON object : View

CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer

Advertisement

dedicated server usa

Products Affected

oracle

  • hyperion_strategic_finance

tidestone

  • formula_one_activex_control