NASLDB: ACDSee Pro < 5.2 Multiple Memory Corruption Vulnerabilities
General
ID: 59785
Name: ACDSee Pro < 5.2 Multiple Memory Corruption Vulnerabilities
Summary: Checks version of ACDSee Pro
Credits: Tenable Network Security, Inc.
Classification
Risk: –
CVSS: –
CVSS Base Vector: CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C
CVSS Temporal Vector: CVSS2#E:POC/RL:OF/RC:C
Port: 139
Family: Windows
Type: Local
Description
ACDSee, an image editing application, is installed on the remote
host. The installed version of ACDSee is earlier than 5.2 and thus
is potentially affected by multiple vulnerabilities :
– Insufficient validation in ID_ICO.apl when copying
colors from cursors in .CUR files can be exploited to
cause a heap-based buffer overflow.
– An error in IDE_ACDStd.apl when allocating memory based
on values in the Logical Screen Descriptor of a GIF
image can be exploited to corrupt heap memory.
– Insufficient validation of ID_PICT.apl of specific byte
values used as sizes in the image content can be
exploited to cause a heap-based buffer overflow.
– Insufficient validation in IDE_ACDStd.apl of specific
byte values used as sizes in the image content when
decompressing run-length encoded bitmaps can be
exploited to cause a heap-based buffer overflow.
Exploiting
Exploit Available: True
Exploitability Ease: Exploits are available
Sources
CVE: –
OSVDB: –
Bugtraq: –
scipID: –
Timeline
Vulnerability Disclosure: 2012/06/21
Patch Release: 2012/06/21
Plugin Release: 2012/06/29
Plugin
Version: 1.2
Filename: acdseepro_52_multiple_vulns.nasl
Filesize: 5168 bytes
MD5 Hash: 6b8f5faa0f55d6a4ef7d64e4b0610559
Identification: SMB/transport
Require Keys: SMB/Registry/Enumerated
Dependencies: "smb_hotfixes.nasl"
Copyright: This script is Copyright© 2012 Tenable Network Security, Inc.
- Letzte Plugins
- USN-1611-1 : thunderbird vulnerabilities
- USN-1610-1 : linux vulnerability
- USN-1609-1 : linux-ti-omap4 vulnerability
- SuSE 10 Security Update : PostgreSQL
- RHSA-2012-1364: bind97
- RHSA-2012-1363: bind
- RHSA-2012-1362: thunderbird
- RHSA-2012-1361: xulrunner
- Mandriva Linux Security Advisory : graphicsmagick
- FreeBSD : phpMyAdmin — Multiple XSS due to unescaped HTML output in Trigger, Procedure and Event pages and Fetching the version information from a non-SSL site is vulnerable to a MITM attack













