Heap-based buffer overflow in VT-Designer - CVE-2018-18983
Published: November 30, 2018
VT-Designer
Detailed vulnerability description
The vulnerability allows a remote attacker to cause DoS condition or execute arbitrary code on the target system.
The vulnerability exists due to the program reads the contents of a file (which is already in memory) into another heap-based buffer. A remote unauthenticated attacker can supply specially crafted input, trigger heap-based buffer overflow and cause the program crash or execute arbitrary code with elevated privileges.
Successful exploitation of the vulnerability may result in system compromise.