PT-2014-2682 · Intergraph · Intergraph Erdas Er Viewer
James Fitts
·
Publicado
2014-01-19
·
Atualizado
2014-01-21
·
CVE-2013-3482
CVSS v2.0
9.3
Alta
| Vetor | AV:N/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Intergraph ERDAS ER Viewer versions prior to 13.0.1.1301
Description
The issue is related to a stack-based buffer overflow in the
rf report error function, which can be triggered by a long string in an ERS file. This can lead to the execution of arbitrary code or cause the application to crash.Recommendations
For versions prior to 13.0.1.1301, update to version 13.0.1.1301 or later to resolve the issue.
Exploit
Correção
Buffer Overflow
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Intergraph Erdas Er Viewer