PT-2005-2810 · Adobe+1 · Creative Suite+3

Publicado

2005-08-24

·

Atualizado

2008-09-05

·

CVE-2005-1843

CVSS v2.0

4.6

Média

VetorAV:L/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions VCNative for Adobe Version Cue versions 1.0 through 1.0.1
Description The issue allows local users to load arbitrary libraries and execute arbitrary code via the -lib command line argument when running on Mac OS X with Version Cue Workspace. This is particularly relevant in the context of Creative Suite versions 1.0 and 1.3.
Recommendations For VCNative for Adobe Version Cue versions 1.0 through 1.0.1, consider restricting the use of the -lib command line argument to prevent the execution of arbitrary code until a patch is available.

Exploit

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2005-1843

Produtos afetados

Creative Suite
Macos X
Vcnative For Adobe Version Cue
Version Cue Workspace