AnyBurn Denial-of-Service Vulnerability in Image Conversion Function
Vulnerability
A denial-of-service vulnerability has been identified in AnyBurn version 4.3 for 32-bit systems. This issue allows local attackers to crash the application by sending an excessively long string to the image conversion function. The vulnerability can be exploited by pasting a large buffer into the source or destination image file fields and clicking 'Convert Now', which triggers the application to crash.
Impact
Exploitation of this vulnerability leads to a crash of the AnyBurn application, causing a denial-of-service condition where the application becomes unresponsive or unavailable.
Reproduction
To reproduce this vulnerability, open the AnyBurn application and navigate to the image conversion feature. Paste a large buffer, approximately 10,000 bytes, into both the source and destination image file fields. Then, click 'Convert Now' to initiate the process, which will result in the application crashing.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
