PT-2009-6082 · Softonic International · Scite
Prodigy
·
Published
2009-11-04
·
Updated
2017-09-19
·
CVE-2009-3857
CVSS v2.0
4.3
Medium
| Vector | AV:N/AC:M/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
Softonic International SciTE version 1.72
Description
The issue is caused by a buffer overflow that allows user-assisted remote attackers to cause a denial of service, resulting in an application crash. This occurs when a Ruby (.rb) file containing a long string is used, and the crash is triggered when a scroll bar is utilized.
Recommendations
For Softonic International SciTE version 1.72, consider avoiding the use of Ruby (.rb) files with long strings until a fix is available. As a temporary workaround, refrain from using the scroll bar when working with such files to minimize the risk of application crash.
Exploit
Fix
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Scite