Use-after-free in Delta Industrial Automation DOPSoft - CVE-2019-13514
Published: August 21, 2019
Vulnerability details
The vulnerability allows a local attacker to compromise vulnerable system.
The vulnerability exists due to a use-after-free error when processing a specially crafted project file. A local attacker can send a specially crafted project file, trigger a use-after-free vulnerability, gain sensitive information on the target system, execute arbitrary code, or crash the application.
Successful exploitation of the vulnerability may allow an attacker to compromise vulnerable system.
Affected software
Amazon Linux AMI
Gentoo Linux
Opensuse