PT-2006-2080 · Microsoft · Visual Interdev+1

Publicado

2006-03-07

·

Atualizado

2018-10-18

·

CVE-2006-1043

CVSS v2.0

5.1

Média

VetorAV:N/AC:H/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Microsoft Visual Studio version 6.0 Microsoft Visual InterDev version 6.0
Description The issue is related to a stack-based buffer overflow that allows attackers to execute arbitrary code. This can be achieved by providing a long DataProject field in either a Visual Studio Database Project File (.dbp) or a Visual Studio Solution (.sln) file.
Recommendations For Microsoft Visual Studio version 6.0, update to a newer version to mitigate the risk. For Microsoft Visual InterDev version 6.0, update to a newer version to mitigate the risk. As a temporary workaround, consider restricting the handling of .dbp and .sln files to minimize the risk of exploitation.

Exploit

Correção

Buffer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2006-1043

Produtos afetados

Visual Interdev
Visual Studio