Description
A memory corruption vulnerability exists in the ANI-parsing functionality of Computerinsel Photoline 20.54. A specially crafted ANI image processed via the application can lead to a stack overflow, overwriting arbitrary data. An attacker can deliver an ANI image to trigger this vulnerability and gain code execution.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2018-15708 | A memory corruption vulnerability exists in the ANI-parsing functionality of Computerinsel Photoline 20.54. A specially crafted ANI image processed via the application can lead to a stack overflow, overwriting arbitrary data. An attacker can deliver an ANI image to trigger this vulnerability and gain code execution. |
References
History
No history.
Status: PUBLISHED
Assigner: talos
Published:
Updated: 2024-09-17T02:01:21.480Z
Reserved: 2018-01-02T00:00:00.000Z
Link: CVE-2018-3922
No data.
Status : Modified
Published: 2018-08-01T15:29:00.737
Modified: 2024-11-21T04:06:18.490
Link: CVE-2018-3922
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD