Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Integer overflow in Sagelight 4.4 and earlier allows remote attackers to execute arbitrary code via crafted width and height dimensions in a BMP file, which triggers a heap-based buffer overflow.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Sagelight BMP文件处理远程堆缓冲区溢出漏洞
Vulnerability Description
Sagelight是美国19th Parallell公司的一款图片编辑器产品。该产品具有功能全面、设计精美的特点。 Sagelight中存在基于堆的缓冲区溢出漏洞,该漏洞源于程序没有对用户提交的数据执行边界值检查。远程攻击者可利用该漏洞在用户运行的应用程序上下文中执行任意代码,也可造成拒绝服务。Sagelight 4.4版本中存在漏洞,其他版本也可能受到影响。
CVSS Information
N/A
Vulnerability Type
N/A