Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Buffer overflow in programmer.exe in Lattice Diamond Programmer 1.4.2 allows user-assisted remote attackers to cause a denial of service (application crash) and execute arbitrary code via a long string in a version attribute of an ispXCF element in an .xcf file.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Lattice Diamond Programmer 缓冲区溢出漏洞
Vulnerability Description
Lattice Diamond是一款FPGA设计软件工具套件。 Lattice Diamond Programmer 1.4.2版本中的programmer.exe中存在缓冲区溢出漏洞。用户协助的远程攻击者可利用该漏洞通过在.xcf文件中的ispXCF元素的版本属性中的长字符串,导致拒绝服务(应用程序崩溃),及执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A