CVE-2012-2915
high · 9.3Stack-based buffer overflow in Lattice Semiconductor PAC-Designer 6.2.1344 allows remote attackers to execute arbitrary code via a long string in a Value tag in a SymbolicSchematicData definition tag in PAC Design (.pac) file.
9.3
CVSS
29.5%
EPSS (exploit prob.)
98th
EPSS percentile
2012-05-21
Published
AV:N/AC:M/Au:N/C:C/I:C/A:C
Weaknesses
CWE-119
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| lattice_semiconductor | pac-designer | 6.2.1344 |
Check a specific version with /api/v1/cve/match.
References
- http://osvdb.org/82001
- http://secunia.com/advisories/48741
- http://www.securityfocus.com/bid/53566
- https://exchange.xforce.ibmcloud.com/vulnerabilities/75698
- http://osvdb.org/82001
- http://secunia.com/advisories/48741
- http://www.securityfocus.com/bid/53566
- https://exchange.xforce.ibmcloud.com/vulnerabilities/75698
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2012-2915