Vulnerabilities > CVE-2012-1197 - Numeric Errors vulnerability in ACD Systems Acdsee 14.1Build137
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
Integer overflow in the IDE_ACDStd.apl module for ACDSee 14.1 Build 137 allows remote attackers to execute arbitrary code via crafted "image dimension values" in a BMP file, which triggers a heap-based buffer overflow.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Common Weakness Enumeration (CWE)
References
- http://osvdb.org/79305
- http://osvdb.org/79305
- http://secunia.com/advisories/47450
- http://secunia.com/advisories/47450
- http://www.securityfocus.com/bid/52047
- http://www.securityfocus.com/bid/52047
- https://exchange.xforce.ibmcloud.com/vulnerabilities/73242
- https://exchange.xforce.ibmcloud.com/vulnerabilities/73242