PT-2023-4335 · Cncsoft+1 · Cncsoft+1

Simon Humbert

·

Publicado

2023-02-02

·

Atualizado

2023-08-04

·

CVE-2022-4634

CVSS v3.1

7.8

Alta

VetorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions CNCSoft versions prior to 1.01.34 ScreenEditor versions prior to 1.01.5
Description The issue is caused by a stack-based buffer overflow. This could allow an attacker to remotely execute arbitrary code.
Recommendations For CNCSoft versions prior to 1.01.34, update to version 1.01.34 or later. For ScreenEditor versions prior to 1.01.5, update to version 1.01.5 or later.

Correção

Stack Overflow

Memory Corruption

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2023-04675
CVE-2022-4634
ZDI-23-1021

Produtos afetados

Cncsoft
Screeneditor