PT-2014-2237 · Adobe · Photoshop Cs5.1+2

Rgod

·

Published

2014-06-19

·

Updated

2014-06-20

·

CVE-2012-2052

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Adobe Photoshop CS5 versions 12.x through 12.0.4 Adobe Photoshop CS5.1 versions 12.1.x through 12.1.0
Description A stack-based buffer overflow issue exists in the U3D.8BI library plugin. This issue can be exploited by remote attackers to execute arbitrary code via a long Collada asset element in a DAE file. For example, the cameraYFov value in the contributor comments element can be used to demonstrate this issue.
Recommendations For Adobe Photoshop CS5 versions 12.x through 12.0.4, update to version 12.0.5 or later. For Adobe Photoshop CS5.1 versions 12.1.x through 12.1.0, update to version 12.1.1 or later.

Exploit

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2012-2052

Affected Products

Photoshop Cs5
Photoshop Cs5.1
U3D.8Bi