CVE-2024-41881

Publication date

2024-07-29 08:39:25

Family

jpcert

State

PUBLISHED

Description

SDoP versions prior to 1.11 fails to handle appropriately some parameters inside the input data, resulting in a stack-based buffer overflow vulnerability. When a user of the affected product is tricked to process a specially crafted XML file, arbitrary code may be executed on the users environment.