InfraRecorder Denial-of-Service Vulnerability
Vulnerability
A denial-of-service vulnerability has been identified in InfraRecorder version 0.53. This issue allows local attackers to crash the application by importing a specially crafted text file. The malicious file, containing 6000 bytes of data, can be imported through the Edit menu's Import function, leading to an application crash.
Impact
Exploitation of this vulnerability causes the application to crash, disrupting any ongoing tasks or processes.
Reproduction
To reproduce this vulnerability, create a text file named 'exploit.txt' containing 6000 bytes of data. Open InfraRecorder and navigate to the Edit menu, then select 'Import...'. Locate and open the 'exploit.txt' file. The application will crash upon import.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
