Lucene search

K
cveMitreCVE-2009-3857
HistoryNov 04, 2009 - 5:30 p.m.

CVE-2009-3857

2009-11-0417:30:00
CWE-119
mitre
web.nvd.nist.gov
24
cve-2009-3857
buffer overflow
softonic international scite
denial of service
remote attackers
nvd
security vulnerability

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:N/A:P

AI Score

6.8

Confidence

High

EPSS

0.004

Percentile

72.7%

Buffer overflow in Softonic International SciTE 1.72 allows user-assisted remote attackers to cause a denial of service (application crash) via a Ruby (.rb) file containing a long string, which triggers the crash when a scroll bar is used.

Affected configurations

Nvd
Node
softonicsciteMatch1.72
VendorProductVersionCPE
softonicscite1.72cpe:2.3:a:softonic:scite:1.72:*:*:*:*:*:*:*

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:N/A:P

AI Score

6.8

Confidence

High

EPSS

0.004

Percentile

72.7%

Related for CVE-2009-3857