TwistedBrush Pro Studio Denial-of-Service Vulnerability in Image Resize Function

Vulnerability

A denial-of-service vulnerability has been identified in TwistedBrush Pro Studio version 24.06. The issue arises in the Resize Image function, where local attackers can cause the application to crash by sending an excessively long buffer. This buffer overflow is triggered by pasting a malicious string into the New Width or New Height fields, leading to a crash of the application.

Impact

Exploitation of this vulnerability causes the application to crash, disrupting the user's work and potentially leading to loss of unsaved data.

Reproduction

To reproduce this vulnerability, open TwistedBrush Pro Studio 24.06 on a Windows 10 system. Navigate to the 'Image' menu and select 'Resize Image...'. In the dialog that appears, paste a long string into the 'New Width' or 'New Height' field. Click 'OK' to apply the changes, which will result in the application crashing.

Added: Mar 21, 2026, 1:25 PM
Updated: Mar 21, 2026, 1:25 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
2.5
exploitability
4.6
remediation
0.0
relevance
4.2
threat
6.4
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.