PT-2011-5157 · Cast & Crew Entertainment · Final Draft
Nick Freeman
·
Published
2011-12-25
·
Updated
2012-02-17
·
CVE-2011-5002
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Final Draft version 8.0 through 8.01
Description
The issue is related to multiple stack-based buffer overflows that can be triggered by remote attackers via a .fdx or .fdxt file containing long elements, including
Word, Transition, Location, Extension, SceneIntro, TimeOfDay, and Character. This can lead to the execution of arbitrary code.Recommendations
For Final Draft version 8.0 through 8.01, update to version 8.02 to resolve the issue.
Exploit
Fix
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Final Draft