PT-2009-6082 · Softonic International · Scite

Prodigy

·

Published

2009-11-04

·

Updated

2017-09-19

·

CVE-2009-3857

CVSS v2.0

4.3

Medium

VectorAV:N/AC:M/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Softonic International SciTE version 1.72
Description The issue is caused by a buffer overflow that allows user-assisted remote attackers to cause a denial of service, resulting in an application crash. This occurs when a Ruby (.rb) file containing a long string is used, and the crash is triggered when a scroll bar is utilized.
Recommendations For Softonic International SciTE version 1.72, consider avoiding the use of Ruby (.rb) files with long strings until a fix is available. As a temporary workaround, refrain from using the scroll bar when working with such files to minimize the risk of application crash.

Exploit

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2009-3857

Affected Products

Scite