Altap.Salamander.PE.Viewer.Buffer

NameAltap.Salamander.PE.Viewer.Buffer.Overflow
Release DateSep 22, 2009
SeverityHigh
ImpactSystem compromise
DescriptionThis indicates a possible attack against a buffer-overflow vulnerabiilty in Altap Servant Salamander with Portable Executable Viewer 2.02.

The vulnerability is caused by an improper operation on user input data, which could lead to arbitrary code execution by inputing a long PDB debug filename in a PE file.
Affected ProductsAltap Salamander 2.5 with Portable Executable Viewer 2.02
Servant Salamander 2.0 with Portable Executable Viewer 1.00
Recommended ActionsYou may upgrade your software to higher versions. For further details, please refer to the vendor's website:
http://www.altap.cz/salam_en/index.html
Common Vulnerabilities and Exposures (CVE)http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3314
Reference/shttp://www.securityfocus.com/bid/24557 (BugTraq)
Reference: VID-17699