vendor:
Easy DVD Creator
by:
tr0ubl3m4k3r
N/A
CVSS
CRITICAL
Buffer Overflow
119
CWE
Product Name: Easy DVD Creator
Affected Version From: 2.5.11
Affected Version To: 2.5.11
Patch Exists: NO
Related CWE:
CPE: a:divxtodvd:easy_dvd_creator:2.5.11
Platforms Tested: Windows 10 64bit
2017
Easy DVD Creator 2.5.11 – Buffer Overflow (Windows 10 64bit, SEH)
The Easy DVD Creator version 2.5.11 is vulnerable to a buffer overflow vulnerability. This can be exploited on Windows 10 64bit systems using SEH overwrite technique. The vulnerability occurs when processing user input for the 'Enter User Name' field during registration. By providing a specially crafted input, an attacker can overflow the buffer and gain control of the SEH (Structured Exception Handler), allowing the execution of arbitrary code.
Mitigation:
To mitigate this vulnerability, users are advised to update to a patched version of Easy DVD Creator.