PT-2004-2190 · Abctab2Ps · Abctab2Ps

Publicado

2004-12-22

·

Atualizado

2017-07-11

·

CVE-2004-1260

CVSS v2.0

10

Alta

VetorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions: abctab2ps version 1.6.3
Description: The issue is related to multiple buffer overflows in the write heading function in subs.cpp and the trim title function in parse.cpp. These buffer overflows can be triggered by remote attackers using crafted ABC files, potentially allowing them to execute arbitrary code.
Recommendations: For abctab2ps version 1.6.3, consider disabling the write heading and trim title functions until a patch is available to prevent potential exploitation. Restrict access to parsing crafted ABC files to minimize the risk of arbitrary code execution.

Exploit

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2004-1260

Produtos afetados

Abctab2Ps