vendor:
Code Blocks
by:
bzyo
7.8
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: Code Blocks
Affected Version From: 17.12
Affected Version To: 17.12
Patch Exists: YES
Related CWE: N/A
CPE: a:codeblocks:code_blocks:17.12
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Windows 7 SP1 x86
2019
Code Blocks 17.12 – Local Buffer Overflow (SEH)(Unicode)
Code Blocks 17.12 is vulnerable to a local buffer overflow vulnerability when a user creates a new class with a long name. This can be exploited to execute arbitrary code by overflowing a buffer and overwriting the Structured Exception Handler (SEH) with a malicious payload.
Mitigation:
The vendor has released a patch to address this vulnerability. Users should update to the latest version of Code Blocks.