First published: Thu Apr 26 2018(Updated: )
A buffer overflow can be triggered in LeviStudio HMI Editor, Version 1.10 part of Wecon LeviStudioU 1.8.29, and PI Studio HMI Project Programmer, Build: November 11, 2017 and prior by opening a specially crafted file.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
We-con Levistudio Hmi Editor | =1.10 | |
We-con Levistudiou | <=1.8.29 | |
We-con Pi Studio Hmi Project Programmer | <=2017-11-11 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2018-7527 is medium with a CVSS score of 5.3.
A buffer overflow can be triggered by opening a specially crafted file in LeviStudio HMI Editor Version 1.10.
Wecon LeviStudio HMI Editor Version 1.10, Wecon LeviStudioU up to version 1.8.29, and PI Studio HMI Project Programmer up to November 11, 2017 are affected by CVE-2018-7527.
Yes, you can find references for CVE-2018-7527 at the following links: [SecurityFocus](http://www.securityfocus.com/bid/104016) and [ICS-CERT](https://ics-cert.us-cert.gov/advisories/ICSA-18-116-02).
CVE-2018-7527 is associated with CWE-119 (Improper Restriction of Operations within the Bounds of a Memory Buffer) and CWE-121 (Stack-based Buffer Overflow).