Description
Macaron Notes 5.5 contains a denial of service vulnerability that allows attackers to crash the application by creating notes with excessively long character strings. Attackers can generate a payload containing 350000 repeated characters and paste it into a note field to trigger application crash and stop functionality.
Problem types
Memory Allocation with Excessive Size Value
Product status
Credits
Geovanni Ruiz
References
www.exploit-db.com/exploits/49953 (ExploitDB-49953)
www.vulncheck.com/...s-denial-of-service-via-buffer-overflow (VulnCheck Advisory: Macaron Notes 5.5 Denial of Service via Buffer Overflow)