SAP BusinessObjects Crystal Reports is prone to an overflow condition. The CMS.exe process fails to properly sanitize user-supplied input when parsing GIOP requests, resulting in a heap-based buffer overflow. With a specially crafted packet, a remote attacker can potentially execute arbitrary code.