Race condition in the Enterprise Tree ActiveX control (EnterpriseControls.dll 11.5.0.313) in Crystal Reports XI Release 2 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via the SelectedSession method, which triggers a buffer overflow.
The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer, leading to a buffer overflow.
Link | Tags |
---|---|
https://www.exploit-db.com/exploits/4931 | exploit vdb entry third party advisory |
http://www.securityfocus.com/bid/27333 | exploit vdb entry third party advisory broken link |
http://www.securitytracker.com/id?1019239 | vdb entry third party advisory broken link |
https://exchange.xforce.ibmcloud.com/vulnerabilities/39743 | vdb entry third party advisory |