Origin Bug Allows Remote Exploits

Aleron

Eh?
Saw this in the news today:

A flaw in EA's Origin game store puts its 40 million or so users at risk of remote execution vulnerabilities

"The Origin platform allows malicious users to exploit local vulnerabilities or features, by abusing the Origin URI handling mechanism," they write. "In other words, an attacker can craft a malicious internet link to execute malicious code remotely on victim’s system, which has Origin installed.

Origin works by using uniform resource identifiers (URIs) to authenticate and initiate games on players' machines. The attack works by spoofing the URI via an URL on a third-party website, so that when a person clicks it, Origin silently opens and loads a file onto the users' machine.

In a demonstration at the Black Hat Security Conference in Amsterdam on Friday, the researchers showed that the exploit could be used to load a Windows dynamic link library file onto the machines. However, because Origin functions on multiple platforms, the exploit works on other systems as well, they say.

A possible fix for the flaw is to disable URLs prefaced with "origin://" via software such as the urlprotocolview, but this will also render useless any desktop shortcuts for Origin games.

http://www.theregister.co.uk/2013/03/19/ea_origin_bug_allows_remote_exploits/
 
Oh EA..... why am I not surprised. Free games for everyone! :)
 
Back
Top