HT Editor File Handling Remote Buffer Overflow Vulnerability
BID:24091
Info
HT Editor File Handling Remote Buffer Overflow Vulnerability
| Bugtraq ID: | 24091 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2007-2823 |
| Remote: | Yes |
| Local: | No |
| Published: | May 22 2007 12:00AM |
| Updated: | May 07 2015 05:38PM |
| Credit: | The vendor reported this vulnerability. |
| Vulnerable: |
HT Editor HT Editor 2.0.5 HT Editor HT Editor 0.8 HT Editor HT Editor 0.5 |
| Not Vulnerable: |
HT Editor HT Editor 2.0.6 |
Discussion
HT Editor File Handling Remote Buffer Overflow Vulnerability
HT Editor is prone to a buffer-overflow vulnerability because it fails to sufficiently bounds-check user-supplied input.
Exploiting this issue may allow an attacker to execute arbitrary code with the privileges of the user running the affected application.
Other unspecified buffer-overflow issues may affect the application as well, but details about such issues are currently unavailable.
Versions of HT Editor prior to 2.0.6 are vulnerable.
HT Editor is prone to a buffer-overflow vulnerability because it fails to sufficiently bounds-check user-supplied input.
Exploiting this issue may allow an attacker to execute arbitrary code with the privileges of the user running the affected application.
Other unspecified buffer-overflow issues may affect the application as well, but details about such issues are currently unavailable.
Versions of HT Editor prior to 2.0.6 are vulnerable.
Exploit / POC
HT Editor File Handling Remote Buffer Overflow Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any exploits for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
HT Editor File Handling Remote Buffer Overflow Vulnerability
Solution:
The vendor has released version 2.0.6 to address this issue. Please see the references for more information.
HT Editor HT Editor 0.5
HT Editor HT Editor 0.8
HT Editor HT Editor 2.0.5
Solution:
The vendor has released version 2.0.6 to address this issue. Please see the references for more information.
HT Editor HT Editor 0.5
-
HT Editor HT Editor 2.0.6
http://hte.sourceforge.net/downloads.html
HT Editor HT Editor 0.8
-
HT Editor HT Editor 2.0.6
http://hte.sourceforge.net/downloads.html
HT Editor HT Editor 2.0.5
-
HT Editor HT Editor 2.0.6
http://hte.sourceforge.net/downloads.html
References
HT Editor File Handling Remote Buffer Overflow Vulnerability
References:
References:
- HT ChangeLog (HT Editor)
- HT Editor Home Page (HT Editor)