BMP.File.Invalid.Header.Buffer.Overflow

Release DateAug 15, 2008
SeverityCritical
ImpactSystem Compromise.
Denial of Service.
DescriptionThis indicates an attempt to exploit a buffer-overflow vulnerability in Adobe Photoshop Album Starter Edition.

This vulnerability is caused by a boundary condition error when parsing malformed BMP images. An attacker may exploit this to execute arbitrary code, or cause denial of service.
Affected ProductsAdobe Photoshop Album Starter 3.2
Adobe After Effects CS3 0
Recommended ActionsPlease see the advisory from Adobe:
http://www.adobe.com/support/security/advisories/apsa08-04.html.
Common Vulnerabilities and Exposures (CVE)http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1765
Reference/shttp://www.securityfocus.com/bid/28874 (BugTraq)
http://www.vupen.com/english/advisories/2008/1317 (FrSIRT)
http://www.milw0rm.com/exploits/5479
Reference: VID-15567