6.8
CVSSv2

CVE-2014-3802

Published: 20/05/2014 Updated: 09/09/2016
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

msdia.dll in Microsoft Debug Interface Access (DIA) SDK, as distributed in Microsoft Visual Studio prior to 2013, does not properly validate an unspecified variable before use in calculating a dynamic-call address, which allows remote malicious users to execute arbitrary code or cause a denial of service (memory corruption) via a crafted PDB file.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft visual studio 2003

microsoft visual studio 2005

microsoft visual studio 2010

microsoft visual studio 2002

microsoft debug interface access software development kit -

microsoft visual studio