Description
dataSIMS Avionics ARINC 664-1 version 4.5.3 contains a local buffer overflow vulnerability that allows attackers to overwrite memory by manipulating the milstd1553result.txt file. Attackers can craft a malicious file with carefully constructed payload and alignment sections to potentially execute arbitrary code on the Windows system.
Problem types
Product status
Credits
Kağan Çapar
References
www.exploit-db.com/exploits/49577 (ExploitDB-49577)
www.ddc-web.com/ (Vendor Homepage)
www.ddc-web.com/...1/software-1/bu-69414?partNumber=BU-69414 (Software Product Page)
www.vulncheck.com/...ms-avionics-arinc-local-buffer-overflow (VulnCheck Advisory: dataSIMS Avionics ARINC 664-1 - Local Buffer Overflow)