A stack based buffer overflow vulnerability exists in the method receiving data from SysTreeView32 control of the GMER 2.1.19357 application. A specially created long path can lead to a buffer overflow on the stack resulting in code execution. An attacker needs to create path longer than 99 characters to trigger this vulnerability.
References
Link | Resource |
---|---|
http://www.talosintelligence.com/reports/TALOS-2016-0127/ | Exploit Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: certcc
Published: 2019-10-29T17:55:40
Updated: 2019-10-29T17:55:40
Reserved: 2016-04-27T00:00:00
Link: CVE-2016-4289
JSON object: View
NVD Information
Status : Analyzed
Published: 2019-10-29T19:15:14.097
Modified: 2019-11-01T17:51:09.933
Link: CVE-2016-4289
JSON object: View
Redhat Information
No data.
CWE