CVE-2011-0615
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
2Exploited in Wild
-Decision
Descriptions
Multiple buffer overflows in Adobe Audition 3.0.1 and earlier allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via crafted data in unspecified fields in the TRKM chunk in an Audition Session (aka .ses) file, related to inconsistent use of character data types.
Desbordamiento de búfer en Adobe Audition v3.0.1 y anteriores, permite a atacantes remotos provocar una denegación de servicio (corrupción de memoria y fallo de la aplicación) o ejecutar código de su elección mediante datos manipulados en campos no especificados en el segmentado de TRKM en un ficheros de sesión de audición (también conocida como .ses), relacionado con un uso inconsistente de los tipos de caracteres de datos.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2011-01-20 CVE Reserved
- 2011-05-12 CVE Published
- 2024-09-17 CVE Updated
- 2024-09-17 EPSS Updated
- 2024-09-17 First Exploit
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer
CAPEC
References (3)
URL | Tag | Source |
---|
URL | Date | SRC |
---|---|---|
http://www.coresecurity.com/content/Adobe-Audition-malformed-SES-file | 2024-09-17 | |
http://www.securityfocus.com/bid/47838 | 2024-09-17 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://www.adobe.com/support/security/bulletins/apsb11-10.html | 2011-05-25 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Adobe Search vendor "Adobe" | Audition Search vendor "Adobe" for product "Audition" | <= 3.0.1 Search vendor "Adobe" for product "Audition" and version " <= 3.0.1" | - |
Affected
| ||||||
Adobe Search vendor "Adobe" | Audition Search vendor "Adobe" for product "Audition" | 3.0 Search vendor "Adobe" for product "Audition" and version "3.0" | - |
Affected
|