vendor:
CherryTree
by:
n30m1nd
7,8
CVSS
HIGH
Memory Corruption
119
CWE
Product Name: CherryTree
Affected Version From: 0.36.9
Affected Version To: 0.37.5
Patch Exists: YES
Related CWE: N/A
CPE: a:giuspen:cherrytree
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Win7 64bit and Win10 64 bit
2016
CherryTree 0.36.9 – Memory Corruption PoC
A memory corruption vulnerability exists in CherryTree 0.36.9 due to a null pointer reference when trying to draw the contents of the graphical bitmaps. An attacker can exploit this vulnerability by creating a malicious .ctd file and hovering over the link. This will cause a crash and potentially lead to arbitrary code execution.
Mitigation:
Upgrade to CherryTree 0.37.6 or later.