header-logo
Suggest Exploit
vendor:
abctab2ps
by:
Not specified
7.5
CVSS
HIGH
Remote Buffer Overflow
120
CWE
Product Name: abctab2ps
Affected Version From: 1.6.2003
Affected Version To: Not specified
Patch Exists: NO
Related CWE: Not specified
CPE: Not specified
Metasploit:
Other Scripts:
Platforms Tested: Not specified
Not specified

abctab2ps Remote Buffer Overflow Vulnerability

abctab2ps is prone to a remote buffer overflow vulnerability. The vulnerability exists in the 'write_heading()' function, where the application fails to properly check the boundaries before copying user-supplied data into sensitive process buffers. An attacker can exploit this by crafting a malicious ABC file containing excessive string data, replacement memory addresses, and executable instructions. If a user processes this file through the application, the attacker's instructions may be executed, leading to unauthorized access to the vulnerable computer.

Mitigation:

No mitigation provided
Source

Exploit-DB raw data:

source: https://www.securityfocus.com/bid/12026/info

abctab2ps is reported prone to a remote buffer overflow vulnerability. This issue arises because the application fails to carry out proper boundary checks before copying user-supplied data in to sensitive process buffers. It is reported that this issue can allow an attacker to gain unauthorized access to a computer in the context of the application.

This vulnerability exists in the 'write_heading()' function.

An attacker can exploit this issue by crafting a malicious ABC file that contains excessive string data, replacement memory addresses, and executable instructions to trigger this issue.

If a user obtains this file and processes it through the application, the attacker-supplied instructions may be executed on the vulnerable computer. It is reported that successful exploitation may result in a compromise in the context of the application.

abctab2ps version 1.6.3 is reported prone to this vulnerability. It is likely that other versions are affected as well. 

https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/25027.zip