Description
Integer overflow in ACDSee Photo Manager 9.0 allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via large width image sizes in a crafted BMP image, as demonstrated by w3intof.bmp and w4intof.bmp.
Affected products
- ACD Systems / acdsee_photo_manager9.0 – 9.0
References
- VENDOR_ADVISORYhttp://www.vupen.com/english/advisories/2007/1283
- MISChttp://www.securityfocus.com/bid/23317
- MISChttp://ifsec.blogspot.com/2007/04/several-windows-image-viewers.html
- VENDOR_ADVISORYhttp://secunia.com/advisories/24779
- MISChttp://www.securityfocus.com/archive/1/464726/100/0/threaded
- MISChttp://osvdb.org/34663
- MISChttp://securityreason.com/securityalert/2558
- MISChttp://www.acdsee.com/support/knowledgebase/article?id=2800