CVE-2017-14628: Buffer Overflow
Published Sep 21, 2017
·Updated
In sam2p 0.49.3, a heap-based buffer overflow exists in the pcxLoadImage24 function of the file inpcx.cpp.
Affected Software
1 affected component
Sam2p Project Sam2p=0.49.3
Event History
Sep 21, 2017
CVE Published
via MITRE·07:00 AM
Data Sourced
via MITRE·07:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-14628?
CVE-2017-14628 has a high severity due to the potential for exploitation via a heap-based buffer overflow.
2
How do I fix CVE-2017-14628?
To fix CVE-2017-14628, upgrade to a later version of sam2p that addresses the vulnerability.
3
What are the potential impacts of CVE-2017-14628?
Exploitation of CVE-2017-14628 could lead to code execution and system compromise.
4
Is my software vulnerable if I use sam2p version 0.49.3?
Yes, sam2p version 0.49.3 is vulnerable to CVE-2017-14628 and should be updated immediately.
5
What version of sam2p should I use to avoid CVE-2017-14628?
Use any version of sam2p later than 0.49.3 to avoid CVE-2017-14628.