Attack (Attack ID:324642)

Release Date2016/08/22

Attack NameWEB WECON LeviStudio ScreenInfo ScrnName Heap Buffer Overflow (CVE-2016-unknown)

Severity

BUG ID

CVE ID

 

Description

A heap buffer overflow vulnerability has been reported in WECON LeviStudio. The vulnerability is due to improper parsing of XML ScrnName attribute of the ScreenInfo tag in LeviStudio project files.
Impact:Remote code execution
Affected System:Windows
Additional References:CVE-2016-unknown; ZDI-16-387

 

Solution

Update vendor's patch.