A stack based buffer overflow vulnerability exists in the method receiving data from SysTreeView32 control of the GMER 2.1.19357 application. A specially created long path can lead to a buffer overflow on the stack resulting in code execution. An attacker needs to create path longer than 99 characters to trigger this vulnerability.
References
Link Resource
http://www.talosintelligence.com/reports/TALOS-2016-0127/ Exploit Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: certcc

Published: 2019-10-29T17:55:40

Updated: 2019-10-29T17:55:40

Reserved: 2016-04-27T00:00:00


Link: CVE-2016-4289

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2019-10-29T19:15:14.097

Modified: 2019-11-01T17:51:09.933


Link: CVE-2016-4289

JSON object: View

cve-icon Redhat Information

No data.

CWE