CVE-2009-3345: Buffer Overflow
Heap-based buffer overflow in SAP Crystal Reports Server 2008 has unknown impact and attack vectors, as demonstrated by a certain module in VulnDisco Pack Professional 8.3 through 8.11. NOTE: as of 20090917, this disclosure has no actionable information. However, because the VulnDisco Pack author is a reliable researcher, the issue is being assigned a CVE identifier for tracking purposes.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2009-3345?
The severity of CVE-2009-3345 is currently classified as unknown due to a lack of actionable information.
How do I fix CVE-2009-3345?
There are no defined fixes for CVE-2009-3345 as it has not been fully disclosed and assessed publicly.
What software is affected by CVE-2009-3345?
CVE-2009-3345 affects SAP Crystal Reports Server 2008.
What type of vulnerability is CVE-2009-3345?
CVE-2009-3345 is classified as a heap-based buffer overflow vulnerability.
What are the possible attack vectors for CVE-2009-3345?
The attack vectors for CVE-2009-3345 are currently unknown and not fully disclosed.