CVE-2019-25625
MEDIUMBlob Studio 2.17 Denial of Service via Malformed Input
Title source: cnaExploitation Summary
EIP tracks 1 public exploit for CVE-2019-25625. PoCs published by Ihsan Sencan.
AI-analyzed exploit summary This PoC demonstrates a Denial of Service (DoS) vulnerability in Blob Studio 2.17 by creating a malformed file with a buffer of 'A' characters. The exploit triggers a crash when the file is opened in the target software.
Description
Blob Studio 2.17 contains a denial of service vulnerability that allows local attackers to crash the application by providing malformed input through the key entry mechanism. Attackers can create a text file with a large buffer of repeated characters and trigger the application to read it, causing the application to crash or become unresponsive.
Exploits (1)
This PoC demonstrates a Denial of Service (DoS) vulnerability in Blob Studio 2.17 by creating a malformed file with a buffer of 'A' characters. The exploit triggers a crash when the file is opened in the target software.
References (4)
Scores
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H