Description
TwistedBrush Pro Studio 24.06 contains a denial of service vulnerability in the Script Recorder component that allows local attackers to crash the application by supplying an excessively large buffer. Attackers can paste a malicious string containing 500,000 characters into the Description field of the Script Recorder dialog to trigger an application crash.
Problem types
Incorrect Calculation of Buffer Size
Product status
Credits
Alejandra Sánchez
References
www.exploit-db.com/exploits/46844 (ExploitDB-46844)
www.pixarra.com (Official Product Homepage)
www.vulncheck.com/...tudio-script-recorder-denial-of-service (VulnCheck Advisory: TwistedBrush Pro Studio 24.06 Script Recorder Denial of Service)