VSCO 1.1.1.0 contains a denial of service vulnerability that allows local attackers to crash the application by submitting an excessively long string through the search functionality. Attackers can p…
Medium CVSS 6.2
Summary
VSCO 1.1.1.0 contains a denial of service vulnerability that allows local attackers to crash the application by submitting an excessively long string through the search functionality. Attackers can paste a buffer of 5000 characters into the search bar and navigate back to trigger an application crash.
In-depth triage · Auto channel
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Sources
- NVD DATABASE
Original Links
- https://www.exploit-db.com/exploits/46385
- https://www.microsoft.com/store/productId/9NC1RLNH76PB
- https://www.vulncheck.com/advisories/vsco-denial-of-service-via-search
Timeline
- nvd_ingest NVD