vendor:
Festalon
by:
Luigi Auriemma
7.5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: Festalon
Affected Version From: 0.5.0
Affected Version To: 2000.5.5
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested:
Buffer Overflow in Festalon Application
A buffer-overflow vulnerability occurs in the Festalon application because the software fails to properly bounds-check user-supplied input before copying it to an insufficiently sized memory buffer. This issue may allow attackers to execute arbitrary machine code in the context of the affected application, which may facilitate the remote compromise of affected computers.
Mitigation:
Ensure proper bounds checking is implemented for user-supplied input before copying it to memory buffers. Regularly update the Festalon application to the latest version to mitigate this vulnerability.