ID:1392 - Exploit for Stack-based buffer overflow in PLIB - CVE-2012-4552

 
Main Vulnerability Database Exploits ID:1392 - Exploit for Stack-based buffer overflow in PLIB - CVE-2012-4552

ID:1392 - Exploit for Stack-based buffer overflow in PLIB - CVE-2012-4552

Published: March 18, 2020


Vulnerability identifier: #VU11323
Vulnerability risk: High
CVE-ID: CVE-2012-4552
CWE-ID: CWE-121
Exploitation vector: Remote access
Vulnerable software:
PLIB

Link to public exploit:


Vulnerability description

The vulnerability allows a remote attacker to execute arbitrary code on the target system.

The weakness exists in the error function in ssg/ssgParser.cxx due to boundary error. A remote attacker can trigger stack-based buffer overflow and execute arbitrary code on the target system via a specially crafted 3d model file that triggers a long error message, as demonstrated by a .ase file.

Successful exploitation of the vulnerability may result in system compromise.


Remediation

Install update from vendor's website.