Vulnerability Description
Buffer overflow in KillProcess 2.20 and earlier allows user-assisted attackers to execute arbitrary code via an exe file with a long FileDescription in the version resource.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Killprocess | Killprocess | <= 2.20 |
References
- http://marc.info/?l=bugtraq&m=112629480300071&w=2
- http://marc.info/?l=bugtraq&m=112629550418406&w=2
- http://www.securityfocus.com/bid/14795Exploit
- https://exchange.xforce.ibmcloud.com/vulnerabilities/22222
- http://marc.info/?l=bugtraq&m=112629480300071&w=2
- http://marc.info/?l=bugtraq&m=112629550418406&w=2
- http://www.securityfocus.com/bid/14795Exploit
- https://exchange.xforce.ibmcloud.com/vulnerabilities/22222
FAQ
What is CVE-2005-2947?
CVE-2005-2947 is a vulnerability with a CVSS score of 5.1 (MEDIUM). Buffer overflow in KillProcess 2.20 and earlier allows user-assisted attackers to execute arbitrary code via an exe file with a long FileDescription in the version resource.
How severe is CVE-2005-2947?
CVE-2005-2947 has been rated MEDIUM with a CVSS base score of 5.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2005-2947?
Check the references section above for vendor advisories and patch information. Affected products include: Killprocess Killprocess.