Security Advisory

CVE-2010-3032

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2010-08-17 17:31:00
Last updated 2024-08-07 02:55:46
Assigner mitre
State PUBLISHED

Description

Integer overflow in the OBGIOPServerWorker::extractHeader function in the ebus-3-3-2-6.dll module in SAP Crystal Reports 2008 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a GIOP packet with a crafted size, which triggers a heap-based buffer overflow.