HD Tune Pro Buffer Overflow Vulnerability Leading to Denial-of-Service
Vulnerability
A buffer overflow vulnerability has been identified in HD Tune Pro version 5.70. This vulnerability allows local attackers to crash the application by entering an excessively long string in the folder/file name field within the File > Options > Save dialog. The issue can be exploited by inputting a 6000-byte payload, causing a denial-of-service condition by forcing the application to crash.
Impact
Exploitation of this vulnerability leads to a denial-of-service condition, causing the application to crash.
Reproduction
To reproduce this vulnerability, first create a text file named 'exploit.txt' containing a 6000-byte payload of repeated characters. Then, open HD Tune Pro 5.70 and navigate to 'File' > 'Options..' > 'Save'. In the 'Folder / file name' input field, paste the contents of 'exploit.txt'. Click 'Apply' and then 'OK' to trigger the application crash.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
