PT-2007-3288 · Acd Systems · Acdsee Photo Manager

Published

2007-04-10

·

Updated

2018-10-16

·

CVE-2007-1943

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions ACDSee Photo Manager version 9.0
Description The issue is related to an integer overflow that can be triggered by large width image sizes in a crafted BMP image. This can cause a denial of service and potentially allow the execution of arbitrary code. The problem has been demonstrated using specific image files.
Recommendations For ACDSee Photo Manager version 9.0, consider avoiding the use of large width image sizes in BMP images until a fix is available. As a temporary workaround, restrict the processing of BMP images with unusually large dimensions to minimize the risk of exploitation.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2007-1943

Affected Products

Acdsee Photo Manager