Description
AimOne Video Converter 2.04 Build 103 contains a buffer overflow vulnerability in its registration form that causes application crashes. Attackers can generate a 7000-byte payload to trigger the denial of service and potentially exploit the software's registration mechanism.
Problem types
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
Product status
Credits
nu11secur1ty
References
www.exploit-db.com/exploits/51196
www.vulncheck.com/...ld-buffer-overflow-in-registration-form
www.exploit-db.com/exploits/51196 (ExploitDB-51196)
aimone-video-converter.software.informer.com/ (AimOne Video Converter Software Informer Page)
web.archive.org/...20180621094013/http://www.aimonesoft.com/ (Archived AimOne Software Website)
github.com/.../AimOne/AimOne-Video-Converter-V2.04-Build-103 (Vulnerability Reproduction Repository)
www.vulncheck.com/...ld-buffer-overflow-in-registration-form (VulnCheck Advisory: AimOne Video Converter 2.04 Build 103 Buffer Overflow in Registration Form)