Lucene search

K
cveMitreCVE-2012-2915
HistoryMay 21, 2012 - 6:55 p.m.

CVE-2012-2915

2012-05-2118:55:07
CWE-119
mitre
web.nvd.nist.gov
35
cve-2012-2915
buffer overflow
lattice semiconductor
pac-designer
remote code execution
security vulnerability

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

8

Confidence

Low

EPSS

0.939

Percentile

99.2%

Stack-based buffer overflow in Lattice Semiconductor PAC-Designer 6.2.1344 allows remote attackers to execute arbitrary code via a long string in a Value tag in a SymbolicSchematicData definition tag in PAC Design (.pac) file.

Affected configurations

Nvd
Node
lattice_semiconductorpac-designerMatch6.2.1344
VendorProductVersionCPE
lattice_semiconductorpac-designer6.2.1344cpe:2.3:a:lattice_semiconductor:pac-designer:6.2.1344:*:*:*:*:*:*:*

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

8

Confidence

Low

EPSS

0.939

Percentile

99.2%