Easyboot Buffer Overflow Vulnerability in Replace Text Function Leading to Denial-of-Service
Vulnerability
A buffer overflow vulnerability has been identified in Easyboot version 6.6.0, specifically within the Replace Text function. This vulnerability allows local attackers to cause a denial-of-service by crashing the application with an oversized string. The issue can be reproduced by accessing the Replace Text tool and pasting a 7000-byte payload into the text fields.
Impact
Exploitation of this vulnerability leads to a denial-of-service condition, causing the application to crash.
Reproduction
To reproduce this vulnerability, open Easyboot 6.6.0 and navigate to 'File' > 'Tools' > 'Replace Text'. In the Replace Text window, paste a 7000-byte string into all three text fields. Click 'Replace', and the application will crash.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
