Описание
Stack-based buffer overflow in the U3D.8BI library plugin in Adobe Photoshop CS5 12.x before 12.0.5 and CS5.1 12.1.x before 12.1.1 allows remote attackers to execute arbitrary code via a long Collada asset element in a DAE file, as demonstrated by the cameraYFov value in the contributor comments element.
Stack-based buffer overflow in the U3D.8BI library plugin in Adobe Photoshop CS5 12.x before 12.0.5 and CS5.1 12.1.x before 12.1.1 allows remote attackers to execute arbitrary code via a long Collada asset element in a DAE file, as demonstrated by the cameraYFov value in the contributor comments element.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2012-2052
- http://osvdb.org/show/osvdb/81832
- http://retrogod.altervista.org/9sg_photoshock_adv.htm
- http://retrogod.altervista.org/9sg_photoshock_u3d.htm
- http://seclists.org/bugtraq/2012/May/58
- http://secunia.com/advisories/49160
- http://www.adobe.com/support/security/bulletins/apsb12-11.html
- http://www.securityfocus.com/bid/53464
Связанные уязвимости
Stack-based buffer overflow in the U3D.8BI library plugin in Adobe Photoshop CS5 12.x before 12.0.5 and CS5.1 12.1.x before 12.1.1 allows remote attackers to execute arbitrary code via a long Collada asset element in a DAE file, as demonstrated by the cameraYFov value in the contributor comments element.