Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 13 Nov 2025 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Irai
Irai automgen |
|
| Vendors & Products |
Irai
Irai automgen |
Thu, 13 Nov 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 12 Nov 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | AUTOMGEN versions up to and including 8.0.0.7 (also referenced as 8.022) contain a vulnerability in that project file handling frees an object and subsequently dereferences the stale pointer when processing certain malformed fields. The dangling-pointer use enables an attacker to influence an indirect call through attacker-controlled memory, resulting in denial-of-service. In some conditions, remote code execution may be possible. | |
| Title | IRAI AUTOMGEN <= 8.0.0.7 Use-After-Free Remote DoS | |
| Weaknesses | CWE-416 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-05-14T02:06:01.191Z
Reserved: 2025-10-28T19:56:32.196Z
Link: CVE-2011-10034
Updated: 2025-11-13T14:30:46.954Z
Status : Deferred
Published: 2025-11-12T22:15:40.533
Modified: 2026-04-15T00:35:42.020
Link: CVE-2011-10034
No data.
OpenCVE Enrichment
Updated: 2025-11-13T15:50:23Z