Crimson Editor '.cfg' File Stack Buffer Overflow Vulnerability

Crimson Editor is prone to a stack-based buffer-overflow vulnerability because the application fails to perform adequate boundary checks on user-supplied input.

Attackers may leverage this issue to execute arbitrary code in the context of the application. Failed attacks will cause denial-of-service conditions.

Crimson Editor 3.70 is vulnerable; other versions may also be affected.


 

Privacy Statement
Copyright 2010, SecurityFocus