PT-2006-5051 · Sony · Sonicstage Mastering Studio
Published
2006-08-21
·
Updated
2017-07-20
·
CVE-2006-4235
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Sony SonicStage Mastering Studio versions 1.1.00 through 2.2.01
Description
The issue is related to a buffer overflow in the import project functionality, which can be exploited by remote attackers to execute arbitrary code. This is achieved through a crafted SMP file.
Recommendations
For versions 1.1.00 through 2.2.01, consider disabling the import project functionality until a patch is available to prevent exploitation. Restrict access to the import project feature to minimize the risk of arbitrary code execution.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Sonicstage Mastering Studio