First published: Wed Dec 06 2006(Updated: )
Stack-based buffer overflow in the Adobe Download Manager before 2.2 allows remote attackers to execute arbitrary code via a long section name in the dm.ini file, which is populated via an AOM file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Downloader | <=2.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-5856 has a high severity rating due to its potential for remote code execution.
To fix CVE-2006-5856, update the Adobe Download Manager to version 2.2 or later.
CVE-2006-5856 affects versions of Adobe Download Manager prior to 2.2.
A stack-based buffer overflow occurs when more data is written to a buffer than it can hold, potentially allowing attackers to execute arbitrary code.
Yes, CVE-2006-5856 can be exploited remotely by attackers using a malicious AOM file.