Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista

CDF (Common Data Format) Library 'src/lib/cdfread64.c' Stack Based Buffer Overflow Vulnerability

The CDF (Common Data Format) library is prone to a stack-based buffer-overflow vulnerability because it fails to perform adequate boundary checks on user-supplied data when processing CDF files.

Attackers can exploit this issue by enticing unsuspecting users to open malicious files. Successful exploits will allow code to run with the privileges of the user. Failed attacks will cause denial-of-service conditions.

CDF 3.2 and prior versions are vulnerable.







 

Privacy Statement
Copyright 2008, SecurityFocus