PT-2005-3565 · Sysinternals · Sysinternals Process Explorer+1
Published
2005-08-23
·
Updated
2008-09-05
·
CVE-2005-2679
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Sysinternals Process Explorer versions 9.23 and earlier, up to but not including 9.25
Description
A buffer overflow issue exists, allowing local users to execute arbitrary code via a long
CompanyName field in the VersionInfo information in a running process.Recommendations
For versions 9.23 and earlier, up to but not including 9.25, update to version 9.25 or later to resolve the issue.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Process Explorer
Sysinternals Process Explorer