vendor:
Dev-C++
by:
shinnai
7.5
CVSS
HIGH
Stack Overflow
121
CWE
Product Name: Dev-C++
Affected Version From: 4.9.9.2
Affected Version To: 4.9.9.2
Patch Exists: NO
Related CWE:
CPE: a:bloodshed:dev-c++:4.9.9.2
Platforms Tested:
Unknown
Dev-C++ 4.9.9.2 Stack Overflow
This exploit allows an attacker to create a file with a large number of characters, causing a stack overflow in Dev-C++ 4.9.9.2. The exploit does not allow for arbitrary code execution, but it may be possible for a skilled attacker to modify the exploit for that purpose.
Mitigation:
The vendor has not released a patch for this vulnerability. Users are advised to avoid opening files created by untrusted sources.