Out-of-bounds write vulnerability exists in KV STUDIO Ver.11.64 and earlier, KV REPLAY VIEWER Ver.2.64 and earlier, and VT5-WX15/WX12 Ver.6.02 and earlier, which may lead to information disclosure or arbitrary code execution by having a user of the affected product open a specially crafted file.
The product writes data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
https://www.keyence.com/kv_vulnerability240924_en | vendor advisory |
https://jvn.jp/en/vu/JVNVU95439120/ | third party advisory |
https://www.keyence.com/kv_vulnerability240329_en | vendor advisory |