This application requires Javascript for optimal performance.

FeedDemon.OPML.Outline.Tag.Buffer.Overflow

Release Date

Apr 20, 2010

Severity

high

Impact

System Compromise: Remote attackers can gain control of vulnerable systems.

Description

This indicates an attack attempt against a buffer-overflow vulnerability in FeedDemon.

The vulnerability is caused by an error when the vulnerable software handles a malicious OPML file. It allows a remote attacker to execute arbitrary code via sending a crafted OPML file.

Affected Products

FeedDemon version 2.7 and below

Recommended Actions

Do not open untrusted RSS feed lists with FeedDemon.

Coverage

IPS
VCM

Common Vulnerabilities and Exposures (CVE)

CVE-2009-0546

Reference/s

http://www.securityfocus.com/bid/33630 (BugTraq)

Reference: VID-20104