Description
AUTOMGEN versions up to and including 8.0.0.7 (also referenced as 8.022) contain a vulnerability in that project file handling frees an object and subsequently dereferences the stale pointer when processing certain malformed fields. The dangling-pointer use enables an attacker to influence an indirect call through attacker-controlled memory, resulting in denial-of-service. In some conditions, remote code execution may be possible.
Problem types
Product status
Any version
Timeline
| 2011-10-10: | ExploitDB-17964 is publicly disclosed. |
Credits
Luigi Auriemma
References
www.exploit-db.com/exploits/17964
www.exploit-db.com/exploits/17964
en.iraifrance.com/automgen
www.vulncheck.com/...irai-automgen-use-after-free-remote-dos