ActiveSetupN.exe in Amazon Audible for Windows before November 2017 allows attackers to execute arbitrary DLL code if ActiveSetupN.exe is launched from a directory where an attacker has already created a Trojan horse dwmapi.dll file.
The product searches for critical resources using an externally-supplied search path that can point to resources that are not under the product's direct control.
Link | Tags |
---|---|
https://twitter.com/LionHeartRoxx/status/936338288314540032 | issue tracking third party advisory |
https://packetstormsecurity.com/files/145202/Amazon-Audible-DLL-Hijacking.html | issue tracking vdb entry third party advisory |
http://www.securityfocus.com/bid/102044 | vdb entry third party advisory |