PT-2007-3288 · Acd Systems · Acdsee Photo Manager
Publicado
2007-04-10
·
Atualizado
2018-10-16
·
CVE-2007-1943
CVSS v2.0
9.3
Alta
| Vetor | AV:N/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
ACDSee Photo Manager version 9.0
Description
The issue is related to an integer overflow that can be triggered by large width image sizes in a crafted BMP image. This can cause a denial of service and potentially allow the execution of arbitrary code. The problem has been demonstrated using specific image files.
Recommendations
For ACDSee Photo Manager version 9.0, consider avoiding the use of large width image sizes in BMP images until a fix is available. As a temporary workaround, restrict the processing of BMP images with unusually large dimensions to minimize the risk of exploitation.
Exploit
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Acdsee Photo Manager