Race condition in the Enterprise Tree ActiveX control (EnterpriseControls.dll 11.5.0.313) in Crystal Reports XI Release 2 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via the SelectedSession method, which triggers a buffer overflow.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2008-01-22 12:00
Updated : 2017-09-28 18:30
NVD link : CVE-2008-0379
Mitre link : CVE-2008-0379
JSON object : View
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer
Products Affected
businessobjects
- crystal_reports_xi
microsoft
- activex