CVE-2007-1770: Buffer Overflow
Buffer overflow in the ArcSDE service (giomgr) in Environmental Systems Research Institute (ESRI) ArcGIS before 9.2 Service Pack 2, when using three tiered ArcSDE configurations, allows remote attackers to cause a denial of service (giomgr crash) and execute arbitrary code via long parameters in crafted requests.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2007-1770?
CVE-2007-1770 is classified as a critical vulnerability that can lead to remote code execution and denial of service.
How do I fix CVE-2007-1770?
To address CVE-2007-1770, users should update ArcGIS to version 9.2 Service Pack 2 or later.
What services are affected by CVE-2007-1770?
CVE-2007-1770 affects the ArcSDE service (giomgr) in ESRI ArcGIS and ArcSDE versions prior to 9.2 Service Pack 2.
Can CVE-2007-1770 be exploited remotely?
Yes, CVE-2007-1770 can be exploited by remote attackers to execute arbitrary code.
What versions are vulnerable to CVE-2007-1770?
The vulnerable versions include ESRI ArcGIS before 9.2 Service Pack 2 and specific versions of ArcSDE, such as 8.3, 9.0, and 9.1.