Buffer Overflow Vulnerability in Baidu Spark Browser
CVE-2014-5349

Currently unrated

Key Information:

Vendor

Baidu

Vendor
CVE Published:
19 August 2014

Badges

๐Ÿ‘พ Exploit Exists๐ŸŸก Public PoC

What is CVE-2014-5349?

A stack-based buffer overflow vulnerability affects Baidu Spark Browser version 26.5.9999.3511, enabling remote attackers to exploit the flaw through nested calls to the window.print JavaScript function. This exploitation can lead to a denial of service, resulting in the application crashing unexpectedly. Attackers can leverage this vulnerability to disrupt user activity, emphasizing the need for prompt updates and security measures.

Exploit Proof of Concept (PoC)

PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.

References

Timeline

  • Vulnerability Reserved

  • ๐ŸŸก

    Public PoC available

  • ๐Ÿ‘พ

    Exploit known to exist

  • Vulnerability published

.