Dsd Consulting Services Llc. · Inputmapper · CVE-2019-25464
**Name of the Vulnerable Software and Affected Versions**
InputMapper version 1.6.10
**Description**
The software contains a buffer overflow issue in the `username` field. Local attackers can cause the application to crash by providing an excessively long string in the `username` field. This can lead to a denial of service when a large payload is copied into the field and processed. The vulnerable action is triggered by double-clicking to process the input.
**Recommendations**
Apply a fix for InputMapper version 1.6.10 to address the buffer overflow issue in the `username` field.