Stack-based buffer overflow in Orbit Downloader 2.8.2 and 2.8.3, and possibly other versions prior to 2.8.5, allows remote malicious users to execute arbitrary code via a crafted HTTP URL with a long host name, which is not properly handled when constructing a "Connecting" log message.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
orbitdownloader orbit downloader 2.8.4 |
||
orbitdownloader orbit downloader 2.8.2 |
||
orbitdownloader orbit downloader 2.8.3 |