tigger.uic.edu
http://tigger.uic.edu/~jlongs2/holes/abctab2ps.txt CVE-2004-1260
abctab2ps 1.6.3 - 'Write_Heading' '.ABC' Remote Buffer Overflow
Record summary
CVE-2004-1260 has a selected CVSS score of 10.0; EIP currently links 2 catalogued exploits.
Description
Multiple buffer overflows in the (1) write_heading function in subs.cpp or (2) trim_title function in parse.cpp for abctab2ps 1.6.3 allow remote attackers to execute arbitrary code via crafted ABC files.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 2
Proofs of concept
2Catalogued exploits
ExploitDBabctab2ps 1.6.3 - 'Write_Heading' '.ABC' Remote Buffer OverflowExploitDB exploitby Limin WangNot analyzed1 file
ExploitDBabctab2ps 1.6.3 - 'Trim_Title' '.ABC' File Remote Buffer OverflowExploitDB exploitby Limin WangNot analyzed1 file
References
4abctab2ps-writeheading-bo(18583)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/18583 abctab2ps-trimtitle-bo(18584)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/18584 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2004-1260