CVE-2007-6009
Last modified
CVE-2007-6009 is a vulnerability of currently unknown severity. Multiple buffer overflows in ACD products allow user-assisted remote attackers to execute arbitrary code via a long section string in a (1) XBM or (2) XPM file to (a) ID_X.apl or (b) IDE_ACDStd.apl. NOTE: the PSP and LHA vectors are already covered by CVE-2007-4344 and CVE-2007-6007. EPSS estimates a 3.93% chance of exploitation in the next 30 days.
Description
Multiple buffer overflows in ACD products allow user-assisted remote attackers to execute arbitrary code via a long section string in a (1) XBM or (2) XPM file to (a) ID_X.apl or (b) IDE_ACDStd.apl. NOTE: the PSP and LHA vectors are already covered by CVE-2007-4344 and CVE-2007-6007. NOTE: these might be integer overflows rather than buffer overflows.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions | Update |
|---|---|---|---|
| Acdsee | Photo Editor | 4.0 | Build 195 |
| Acdsee | Photo Manager | 9.0 | Build 108 |
| Acdsee | Pro Photo Manager | 8.1 | Build 99 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2007-6009?
How severe is CVE-2007-6009?
How do I fix CVE-2007-6009?
Are you affected by CVE-2007-6009?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
