Multiple Adobe Products BMP Image Header Buffer Overflow Vulnerability
BID:28874
Info
Multiple Adobe Products BMP Image Header Buffer Overflow Vulnerability
| Bugtraq ID: | 28874 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2008-1765 |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 21 2008 12:00AM |
| Updated: | Jul 15 2008 05:49PM |
| Credit: | c0ntex |
| Vulnerable: |
Adobe Photoshop Album Starter 3.2 Adobe After Effects CS3 0 |
| Not Vulnerable: | |
Discussion
Multiple Adobe Products BMP Image Header Buffer Overflow Vulnerability
Multiple Adobe products are prone to a buffer-overflow vulnerability because they fail to perform adequate boundary checks on user-supplied input. The vulnerability occurs when handling malformed image header data in image files.
Successfully exploiting this issue allows attackers to execute arbitrary code with the privileges of a user running one of the applications. Failed exploit attempts will result in a denial-of-service condition.
The following products are vulnerable:
Adobe Photoshop Album Starter 3.2
Adobe After Effects CS3
Other applications and versions may also be affected.
Multiple Adobe products are prone to a buffer-overflow vulnerability because they fail to perform adequate boundary checks on user-supplied input. The vulnerability occurs when handling malformed image header data in image files.
Successfully exploiting this issue allows attackers to execute arbitrary code with the privileges of a user running one of the applications. Failed exploit attempts will result in a denial-of-service condition.
The following products are vulnerable:
Adobe Photoshop Album Starter 3.2
Adobe After Effects CS3
Other applications and versions may also be affected.
Exploit / POC
Multiple Adobe Products BMP Image Header Buffer Overflow Vulnerability
Core Security Technologies has developed a working commercial exploit for its CORE IMPACT product. This exploit is not otherwise publicly available or known to be circulating in the wild.
The following exploit is available:
Core Security Technologies has developed a working commercial exploit for its CORE IMPACT product. This exploit is not otherwise publicly available or known to be circulating in the wild.
The following exploit is available:
Solution / Fix
Multiple Adobe Products BMP Image Header Buffer Overflow Vulnerability
Solution:
Adobe has released an advisory stating that they are working on fixes to address this issue.
This BID previously stated that Adobe Photoshop CS3 was affected, but Adobe states that their previous advisory (APSB07-13) addresses this issue for Photoshop CS2, Photoshop CS3, and Photoshop Elements 5.0.
Please see the references for more information.
Solution:
Adobe has released an advisory stating that they are working on fixes to address this issue.
This BID previously stated that Adobe Photoshop CS3 was affected, but Adobe states that their previous advisory (APSB07-13) addresses this issue for Photoshop CS2, Photoshop CS3, and Photoshop Elements 5.0.
Please see the references for more information.
References
Multiple Adobe Products BMP Image Header Buffer Overflow Vulnerability
References:
References:
- [Full-disclosure] Adobe Unchecked Overflow (c0ntex)
- Adobe Homepage (Adobe)
- Adobe Photoshop Homepage (Adobe)
- Re: [Full-disclosure] Adobe Unchecked Overflow (Kevin Finisterre)
- APSA08-04: Potential vulnerability in Photoshop Album Starter Edition 3.2 (Adobe)
- APSB07-13: Photoshop CS2 and CS3 updates to address security vulnerabilities (Adobe)