PT-2007-3288 · Acd Systems · Acdsee Photo Manager
Published
2007-04-10
·
Updated
2018-10-16
·
CVE-2007-1943
CVSS v2.0
9.3
High
| Vector | AV:N/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
ACDSee Photo Manager version 9.0
Description
The issue is related to an integer overflow that can be triggered by large width image sizes in a crafted BMP image. This can cause a denial of service and potentially allow the execution of arbitrary code. The problem has been demonstrated using specific image files.
Recommendations
For ACDSee Photo Manager version 9.0, consider avoiding the use of large width image sizes in BMP images until a fix is available. As a temporary workaround, restrict the processing of BMP images with unusually large dimensions to minimize the risk of exploitation.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Acdsee Photo Manager