Notebook Pro
- <= 2.0
A denial-of-service vulnerability has been identified in Notebook Pro version 2.0. This issue allows local attackers to crash the application by entering an excessively long string in the notebook name field. To exploit this vulnerability, an attacker can create a text file with 500 or more characters, paste it into the 'New Notebook Name' field, and trigger an application crash when attempting to create and save the notebook.
Exploiting this vulnerability causes Notebook Pro 2.0 to crash, terminating the application unexpectedly.
The vulnerability can be reproduced by creating a text file containing 500 or more characters. This file should be opened and the text copied. Then, in Notebook Pro 2.0 on a Windows 10 64-bit system, start a new notebook and paste the copied text into the 'New Notebook Name' field. When 'Create & Save' is clicked, the application will crash.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.