PT-2009-4803 · Unknown · Photo Dvd Maker

Published

2009-07-08

·

Updated

2018-10-10

·

CVE-2009-2375

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Photo DVD Maker versions 8.02 and earlier
Description The issue is related to a stack-based buffer overflow that allows remote attackers to execute arbitrary code. This is achieved by providing a long value for the File Name parameter in a .pdm file.
Recommendations For Photo DVD Maker version 8.02 and earlier, consider avoiding the use of long File Name parameters in .pdm files until a fix is available. As a temporary workaround, restrict the processing of .pdm files with unusually long File Name parameters to minimize the risk of exploitation.

Exploit

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2009-2375

Affected Products

Photo Dvd Maker