Stack-Based Buffer Overflow in HP Instant Support Driver Check by HP
CVE-2007-3554

Currently unrated

Key Information:

Vendor
HP
Vendor
CVE Published:
4 July 2007

Summary

The HP Instant Support - Driver Check contains a stack-based buffer overflow vulnerability in the HPSDDX Class ActiveX control (sdd.dll). This flaw can be exploited by remote attackers who send a specially crafted long argument to the queryHub function, potentially allowing them to execute arbitrary code on the affected system. Users are strongly advised to update to version 1.5.0.3 or later to mitigate this risk.

References

EPSS Score

33% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.