← Advisories

Nevercenter Silo 2.1.1 Insecure Library Loading Vulnerability

High
Advisory ID
ZSL-2010-4972
Release Date
08 November 2010
Vendor
Nevercenter Ltd. Co. - http://www.nevercenter.com
Affected Version
2.1.1
CVE
N/A
Tested On
Microsoft Windows XP Professional SP3 (EN)
Summary

Silo 2 is a focused 3D modeling application with the ability to effortlessly switch between organically sculpting high-polygon models and precisely controlling hard-edged surfaces. It can be used for anything from creating 3D characters for video games and movies to quickly exploring 3D architectural ideas. Silo is currently being used at top studios worldwide as both a stand-alone design tool and as a versatile element of a multi-software 3D graphics workflow. It is available for both Windows and Mac OS.

Description

Silo 2 suffers from a DLL hijacking vulnerability, which could be exploited by remote attackers to compromise a vulnerable system. This issue is caused due to the application insecurely loading certain librairies ("wintab32.dll") from the current working directory, which could allow attackers to execute arbitrary code by tricking a user into opening an audio file (.sib) from a network share.

Proof of Concept
Disclosure Timeline
N/A
Credits
Vulnerability discovered by Gjoko Krstic
References
Changelog
08.11.2010Initial release
09.11.2010Added reference [1], [2], [3] and [4]
11.11.2010Added reference [5]
17.11.2010Added reference [6]
19.11.2010Added reference [7]