PhotoLine JPEG2000 Remote Heap Based Buffer Overflow Vulnerability
BID:51948
Info
PhotoLine JPEG2000 Remote Heap Based Buffer Overflow Vulnerability
| Bugtraq ID: | 51948 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2012-1055 |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 09 2012 12:00AM |
| Updated: | Mar 19 2015 07:35AM |
| Credit: | Parvez Anwar |
| Vulnerable: |
PhotoLine PhotoLine 17.01 |
| Not Vulnerable: |
PhotoLine PhotoLine 17.02 |
Discussion
PhotoLine JPEG2000 Remote Heap Based Buffer Overflow Vulnerability
PhotoLine is prone to a remote heap-based buffer-overflow vulnerability because the application fails to properly bounds-check user-supplied input before copying it to an insufficiently sized memory buffer.
Successful exploits allow remote attackers to execute arbitrary code in the context of the vulnerable application. Failed exploit attempts likely result in denial-of-service conditions.
PhotoLine 17.01 is vulnerable; other versions may also be affected.
PhotoLine is prone to a remote heap-based buffer-overflow vulnerability because the application fails to properly bounds-check user-supplied input before copying it to an insufficiently sized memory buffer.
Successful exploits allow remote attackers to execute arbitrary code in the context of the vulnerable application. Failed exploit attempts likely result in denial-of-service conditions.
PhotoLine 17.01 is vulnerable; other versions may also be affected.
Exploit / POC
PhotoLine JPEG2000 Remote Heap Based Buffer Overflow Vulnerability
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
PhotoLine JPEG2000 Remote Heap Based Buffer Overflow Vulnerability
Solution:
Updates are available; please see the references for more information.
Solution:
Updates are available; please see the references for more information.
References
PhotoLine JPEG2000 Remote Heap Based Buffer Overflow Vulnerability
References:
References:
- PhotoLine Homepage (PhotoLine )