NONE · 0

CVE-2009-20004

gAlan 0.2.1, a modular audio processing environment for Windows, is vulnerable to a stack-based buffer overflow when parsing .galan files. The application fails to properly validate the length of inpu...

Vulnerability Description

gAlan 0.2.1, a modular audio processing environment for Windows, is vulnerable to a stack-based buffer overflow when parsing .galan files. The application fails to properly validate the length of input data, allowing a specially crafted file to overwrite the stack and execute arbitrary code. Exploitation requires local interaction, typically by convincing a user to open the malicious file.

Related Weaknesses (CWE)

References

FAQ

What is CVE-2009-20004?

CVE-2009-20004 is a documented vulnerability. gAlan 0.2.1, a modular audio processing environment for Windows, is vulnerable to a stack-based buffer overflow when parsing .galan files. The application fails to properly validate the length of inpu...

How severe is CVE-2009-20004?

CVSS scoring is not yet available for CVE-2009-20004. Check NVD for updates.

Is there a patch for CVE-2009-20004?

Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.