PT-2022-3926 · Unknown · Alpha7 Pc Loader

Michael Heinzl

·

Published

2022-05-31

·

Updated

2022-09-07

·

CVE-2022-1888

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Alpha7 PC Loader (All versions)
Description The issue is caused by a stack-based buffer overflow that occurs when processing a specifically crafted project file. This may allow an attacker to execute arbitrary code. The exploitation of this issue can enable an attacker to run arbitrary code.
Recommendations For all versions, consider restricting the processing of project files from untrusted sources until a fix is available. As a temporary workaround, consider implementing input validation to prevent the processing of specifically crafted project files. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Memory Corruption

Stack Overflow

Weakness Enumeration

Related Identifiers

BDU:2022-04752
CVE-2022-1888

Affected Products

Alpha7 Pc Loader