CVE-2013-5365

Heap-based buffer overflow in Autodesk SketchBook for Enterprise 2014, Pro, and Express before 6.25, and Copic Edition before 2.0.2 allows remote attackers to execute arbitrary code via RLE-compressed channel data in a PSD file.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:autodesk:sketchbook:*:*:*:*:copic:*:*:*
cpe:2.3:a:autodesk:sketchbook_express:*:*:*:*:*:*:*:*
cpe:2.3:a:autodesk:sketchbook_for_enterprise_2014:*:*:*:*:*:*:*:*
cpe:2.3:a:autodesk:sketchbook_pro:*:*:*:*:*:*:*:*

History

21 Nov 2024, 01:57

Type Values Removed Values Added
References () http://secunia.com/advisories/55000 - Vendor Advisory () http://secunia.com/advisories/55000 - Vendor Advisory
References () http://secunia.com/secunia_research/2014-5 - Vendor Advisory () http://secunia.com/secunia_research/2014-5 - Vendor Advisory
References () http://www.sketchbook.com/news/important-security-update-for-sketchbook.html - Patch, Vendor Advisory () http://www.sketchbook.com/news/important-security-update-for-sketchbook.html - Patch, Vendor Advisory

Information

Published : 2014-04-02 16:05

Updated : 2024-11-21 01:57


NVD link : CVE-2013-5365

Mitre link : CVE-2013-5365

CVE.ORG link : CVE-2013-5365


JSON object : View

Products Affected

autodesk

  • sketchbook_express
  • sketchbook
  • sketchbook_for_enterprise_2014
  • sketchbook_pro
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer