OSVDB ID: 35370

Title: Adobe Photoshop Document Handling Overflow

Info

Disclosure

Apr 24, 2007

Discovery

Unknown

Dates

Exploit

Apr 24, 2007

Solution

Unknown

Description

A local overflow exists in Adobe Photoshop. The application fails to check bounds on file fields resulting in a stack-based overflow. With a specially crafted BMP, DIB, PNG or RLE file, an attacker can cause arbitrary code execution resulting in a loss of integrity.

Classification

Location: Local Access Required
Attack Type: Input Manipulation
Impact: Loss of Integrity
Exploit: Exploit Public
Disclosure: OSVDB Verified

Solution

Currently, there are no known workarounds or upgrades to correct this issue. However, Adobe Systems Incorporated has released a patch to address this vulnerability.

Products

Adobe Systems Incorporated

Photoshop

CS3

References

Credit

  • Marsu - Marsupilamipowahotmail.fr -


Direct URL: http://osvdb.org/35370