PT-2011-5157 · Cast & Crew Entertainment · Final Draft

Nick Freeman

·

Published

2011-12-25

·

Updated

2012-02-17

·

CVE-2011-5002

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Final Draft version 8.0 through 8.01
Description The issue is related to multiple stack-based buffer overflows that can be triggered by remote attackers via a .fdx or .fdxt file containing long elements, including Word, Transition, Location, Extension, SceneIntro, TimeOfDay, and Character. This can lead to the execution of arbitrary code.
Recommendations For Final Draft version 8.0 through 8.01, update to version 8.02 to resolve the issue.

Exploit

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2011-5002

Affected Products

Final Draft