CVE-2022-1405: Delta Electronics CNCSoft Stack-based Buffer Overflow
Published Aug 31, 2022
·Updated
CNCSoft: All versions prior to 1.01.32 does not properly sanitize input while processing a specific project file, allowing a possible stack-based buffer overflow condition.
Affected Software
2 affected componentsFixes available
Deltaww Cncsoft<1.01.32
Delta Electronics CNCSoft<1.01.32
1.01.32
Remediation
Patch Available
Event History
Aug 31, 2022
CVE Published
via MITRE·03:33 PM
Data Sourced
via MITRE·03:33 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2022-1405?
CVE-2022-1405 is a vulnerability in CNCSoft versions prior to 1.01.32 that allows a possible stack-based buffer overflow condition.
2
How does CVE-2022-1405 affect software?
CVE-2022-1405 affects CNCSoft versions prior to 1.01.32 by not properly sanitizing input while processing a specific project file.
3
What is the severity of CVE-2022-1405?
The severity of CVE-2022-1405 is high, with a CVSS score of 7.8.
4
How can I fix CVE-2022-1405?
To fix CVE-2022-1405, update CNCSoft to version 1.01.32 or later.
5
Where can I find more information about CVE-2022-1405?
You can find more information about CVE-2022-1405 at the following link: [CISA Advisory ICSA-22-132-01](https://www.cisa.gov/uscert/ics/advisories/icsa-22-132-01)