← All CVEs

CVE-2012-3797

high · 10

Pro-face WinGP PC Runtime 3.1.00 and earlier, and ProServr.exe in Pro-face Pro-Server EX 1.30.000 and earlier, does not properly check packet sizes before reusing packet memory buffers, which allows remote attackers to cause a denial of service (heap memory corruption) or possibly have unspecified other impact via a short crafted packet with a certain opcode.

10
CVSS
12.2%
EPSS (exploit prob.)
96th
EPSS percentile
2012-06-25
Published

AV:N/AC:L/Au:N/C:C/I:C/A:C

Weaknesses

CWE-119

Affected products

VendorProductAffected versions
pro-facepro-server_ex<= 1.30.000
pro-facepro-server_ex1.21.000
pro-facepro-server_ex1.23.000
pro-facepro-server_ex1.24.200
pro-facewingp_pc_runtime<= 3.1.00

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2012-3797