In SweetScape 010 Editor 9.0.1, improper validation of arguments in the internal implementation of the SubStr function (provided by the scripting engine) allows an attacker to cause a denial of service by crashing the application.
The product reads data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
https://www.sweetscape.com/010editor/release_notes.html | release notes vendor advisory |
https://github.com/ereisr00/bagofbugz/blob/master/010Editor/SubStr.bt | third party advisory exploit |