CVE-2019-25624
MEDIUMLiquid Studio 2.17 Denial of Service via Malformed Input
Title source: cnaExploitation Summary
EIP tracks 1 public exploit for CVE-2019-25624. PoCs published by Ihsan Sencan.
AI-analyzed exploit summary This PoC demonstrates a Denial of Service (DoS) vulnerability in Liquid Studio 2.17 by creating a file with a buffer of 10 'A' characters. The exploit is trivial and relies on the software crashing when processing the file.
Description
Liquid Studio 2.17 contains a denial of service vulnerability that allows local attackers to crash the application by providing malformed input through the keyboard interface. Attackers can trigger the vulnerability by entering arbitrary characters during application runtime, causing the application to become unresponsive or terminate abnormally.
Exploits (1)
This PoC demonstrates a Denial of Service (DoS) vulnerability in Liquid Studio 2.17 by creating a file with a buffer of 10 'A' characters. The exploit is trivial and relies on the software crashing when processing the file.
References (4)
Scores
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H