Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2007-4344
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2007-4344

Description:
Multiple input validation errors in ACD ACDSee Photo Manager 9.0 build 108, Pro Photo Manager 8.1 build 99, and Photo Editor 4.0 build 195 allow user-assisted remote attackers to execute arbitrary code via a long section string in (1) a PSP image to the ID_PSP.apl plug-in or (2) an LHA archive to the AM_LHA.apl plug-in, resulting in a heap-based buffer overflow.

CVE Status:
Candidate

References:

SREASON
  http://securityreason.com/securityalert/3367

SAID
  Secunia Advisory: SA25952

MISC
  http://secunia.com/secunia_research/2007-73/advisory/

CONFIRM
  http://www.acdsee.com/support/knowledgebase/article?id=2800

BUGTRAQ
  http://www.securityfocus.com/archive/1/archive/1/483188/100/0/threaded

BID
  26297


Return to the previous page.