ID

VAR-201005-0431


TITLE

No$gba '.nds' file buffer overflow vulnerability

Trust: 0.6

sources: CNVD: CNVD-2010-0761

DESCRIPTION

No$gba is an NDS simulator. No$gba handles buffer overflows in \".nds\" files, and remote attackers can exploit vulnerabilities to crash applications. Successful exploitation of a vulnerability can execute arbitrary instructions with application privileges. no$gba is prone to a remote buffer-overflow vulnerability because it fails to perform adequate bounds checks on user-supplied input. Failed attacks will cause denial-of-service conditions. no$gba 2.5c is vulnerable; other versions may also be affected

Trust: 0.81

sources: CNVD: CNVD-2010-0761 // BID: 39852

IOT TAXONOMY

category:['Network device']sub_category: -

Trust: 0.6

sources: CNVD: CNVD-2010-0761

AFFECTED PRODUCTS

vendor:no gbamodel:no$gba 2.5cscope: - version: -

Trust: 0.9

sources: CNVD: CNVD-2010-0761 // BID: 39852

THREAT TYPE

network

Trust: 0.3

sources: BID: 39852

TYPE

Input Validation Error

Trust: 0.3

sources: BID: 39852

EXTERNAL IDS

db:BIDid:39852

Trust: 0.9

db:CNVDid:CNVD-2010-0761

Trust: 0.6

sources: CNVD: CNVD-2010-0761 // BID: 39852

REFERENCES

url:http://www.securityfocus.com/bid/39852

Trust: 0.6

url:http://www.nogba.com/

Trust: 0.3

sources: CNVD: CNVD-2010-0761 // BID: 39852

CREDITS

l3D

Trust: 0.3

sources: BID: 39852

SOURCES

db:CNVDid:CNVD-2010-0761
db:BIDid:39852

LAST UPDATE DATE

2022-05-17T02:04:52.456000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2010-0761date:2010-05-03T00:00:00
db:BIDid:39852date:2010-05-03T14:32:00

SOURCES RELEASE DATE

db:CNVDid:CNVD-2010-0761date:2010-05-03T00:00:00
db:BIDid:39852date:2010-03-21T00:00:00