Format string vulnerability in DataRescue Interactive Disassembler and Debugger (IDA) Pro 4.7.0.830 allows remote attackers or local users to cause a denial of service (CPU consumption or application crash) and possibly execute arbitrary code via format string specifiers in a dynamic link library (DLL) name.
References
Link | Resource |
---|---|
http://pb.specialised.info/all/adv/ida-debugger-adv.txt | Exploit |
http://www.datarescue.com/cgi-local/ultimatebb.cgi?ubb=get_topic;f=2;t=000155;p=0 | Exploit |
http://secunia.com/advisories/14610 | Patch Vendor Advisory |
http://marc.info/?l=bugtraq&m=111100269512216&w=2 |
Configurations
Information
Published : 2005-05-01 21:00
Updated : 2016-10-17 20:14
NVD link : CVE-2005-0770
Mitre link : CVE-2005-0770
JSON object : View
CWE
Products Affected
datarescue
- ida_pro