PT-2004-1813 · Ollydbg · Ollydbg

Ned

·

Published

2004-07-23

·

Updated

2017-10-11

·

CVE-2004-0733

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions OllyDbg version 1.10
Description The issue allows remote attackers to cause a denial of service, potentially leading to a crash, and may also enable the execution of arbitrary code. This is achieved through format string specifiers that are directly provided to the OutputDebugString function call.
Recommendations For OllyDbg version 1.10, consider updating to a newer version that addresses this issue, if available. As a temporary workaround, restrict the use of format string specifiers in the OutputDebugString function call to minimize the risk of exploitation.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2004-0733

Affected Products

Ollydbg