Integer overflow in the Swap4 function in valet4.dll in Luxology Modo 401 allows user-assisted remote attackers to execute arbitrary code via a .LXO file containing a CHNL subchunk associated with an invalid length.
Weaknesses in this category are related to improper calculation or conversion of numbers.
Link | Tags |
---|---|
http://www.securityfocus.com/archive/1/509810/100/0/threaded | mailing list |
http://www.securityfocus.com/archive/1/509843/100/0/threaded | mailing list |
http://www.coresecurity.com/content/luxology-modo-lxo-vulnerability | exploit |
http://secunia.com/advisories/38784 | third party advisory |
http://osvdb.org/62669 | vdb entry |
http://www.securityfocus.com/bid/38460 | vdb entry |