HIGH · 9.3

CVE-2011-0499

Buffer overflow in VideoSpirit Pro 1.6.8.1 and possibly earlier versions, and VideoSpirit Lite 1.4.0.1 and possibly other versions, allows user-assisted remote attackers to execute arbitrary code via ...

Vulnerability Description

Buffer overflow in VideoSpirit Pro 1.6.8.1 and possibly earlier versions, and VideoSpirit Lite 1.4.0.1 and possibly other versions, allows user-assisted remote attackers to execute arbitrary code via a VideoSpirit project (.visprj) file containing a valitem element with a long "name" attribute. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

CVSS Score

9.3

HIGH

AV:N/AC:M/Au:N/C:C/I:C/A:C
Confidentiality
COMPLETE
Integrity
COMPLETE
Availability
COMPLETE

Affected Products

VendorProductVersions
VerytoolsVideospirit Lite<= 1.4.0.1
VerytoolsVideospirit Pro<= 1.6.8.1

Related Weaknesses (CWE)

References

FAQ

What is CVE-2011-0499?

CVE-2011-0499 is a vulnerability with a CVSS score of 9.3 (HIGH). Buffer overflow in VideoSpirit Pro 1.6.8.1 and possibly earlier versions, and VideoSpirit Lite 1.4.0.1 and possibly other versions, allows user-assisted remote attackers to execute arbitrary code via ...

How severe is CVE-2011-0499?

CVE-2011-0499 has been rated HIGH with a CVSS base score of 9.3/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2011-0499?

Check the references section above for vendor advisories and patch information. Affected products include: Verytools Videospirit Lite, Verytools Videospirit Pro.