CVE-2008-3702

Multiple stack-based buffer overflows in the Animation GIF ActiveX control in JComSoft AniGIF.ocx 1.12 and 2.47, as used in products such as SpeedBit Download Accelerator Plus (DAP) 8.6, allow remote attackers to execute arbitrary code via a long argument to the (1) ReadGIF or (2) ReadGIF2 method.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:jcomsoft:anigif:1.12:*:*:*:*:*:*:*
cpe:2.3:a:jcomsoft:anigif:2.47:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:a:speedbit:download_accelerator_plus:8.6:*:*:*:*:*:*:*

History

21 Nov 2024, 00:49

Type Values Removed Values Added
References () http://securityreason.com/securityalert/4159 - () http://securityreason.com/securityalert/4159 -
References () http://www.securityfocus.com/bid/30621 - () http://www.securityfocus.com/bid/30621 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/44412 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/44412 -
References () https://www.exploit-db.com/exploits/6216 - () https://www.exploit-db.com/exploits/6216 -

Information

Published : 2008-08-15 20:41

Updated : 2024-11-21 00:49


NVD link : CVE-2008-3702

Mitre link : CVE-2008-3702

CVE.ORG link : CVE-2008-3702


JSON object : View

Products Affected

jcomsoft

  • anigif

speedbit

  • download_accelerator_plus
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer