Browse3D '.sfs' File Handling Buffer Overflow Vulnerability
BID:33199
Info
Browse3D '.sfs' File Handling Buffer Overflow Vulnerability
| Bugtraq ID: | 33199 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 11 2009 12:00AM |
| Updated: | Jan 27 2009 07:09PM |
| Credit: | Houssamix |
| Vulnerable: |
Browse3D Browse3D 3.5 |
| Not Vulnerable: | |
Discussion
Browse3D '.sfs' File Handling Buffer Overflow Vulnerability
Browse3D is prone to a remote buffer-overflow vulnerability.
The vulnerability occurs when the application handles malformed '.sfs' files.
Attackers can exploit this issue to execute arbitrary code within the context of the affected application. Failed exploit attempts will result in a denial of service.
Browse3D 3.5 is vulnerable; other versions may also be affected.
Browse3D is prone to a remote buffer-overflow vulnerability.
The vulnerability occurs when the application handles malformed '.sfs' files.
Attackers can exploit this issue to execute arbitrary code within the context of the affected application. Failed exploit attempts will result in a denial of service.
Browse3D 3.5 is vulnerable; other versions may also be affected.
Exploit / POC
Browse3D '.sfs' File Handling Buffer Overflow Vulnerability
The following exploits are available:
The following exploits are available:
Solution / Fix
Browse3D '.sfs' File Handling Buffer Overflow Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
Browse3D '.sfs' File Handling Buffer Overflow Vulnerability
References:
References: