CVE-2015-8096

Severity
10.0CRITICAL
EPSS
17.1%
top 5.01%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedNov 9
Latest updateMay 14

Description

Integer overflow in Google Picasa 3.9.140 Build 239 and Build 248 allows remote attackers to execute arbitrary code via unspecified vectors related to "phase one 0x412 tag," which triggers a heap-based buffer overflow.

CVSS vector

AV:N/AC:L/C:C/I:C/A:CExploitability: 10.0 | Impact: 10.0

Affected Packages1 packages

NVDgoogle/picasa3.9.140

🔴Vulnerability Details

2
GHSA
GHSA-hcvg-vqp3-m7mq: Integer overflow in Google Picasa 32022-05-14
CVEList
CVE-2015-8096: Integer overflow in Google Picasa 32015-11-09