Vulnerabilities > CVE-2018-3835 - Out-of-bounds Write vulnerability in Disneyanimation Ptex 2.2

047910
CVSS 8.8 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
network
low complexity
disneyanimation
CWE-787

Summary

An exploitable out of bounds write vulnerability exists in version 2.2 of the Per Face Texture mapping application known as PTEX. The vulnerability is present in the reading of a file without proper parameter checking. The value read in, is not verified to be valid and its use can lead to a buffer overflow, potentially resulting in code execution.

Vulnerable Configurations

Part Description Count
Application
Disneyanimation
1

Common Weakness Enumeration (CWE)

Talos

idTALOS-2018-0515
last seen2019-05-29
published2018-01-26
reporterTalos Intelligence
sourcehttp://www.talosintelligence.com/vulnerability_reports/TALOS-2018-0515
titleWalt Disney Per-Face Texture Mapping faceInfoSize Code Execution Vulnerability