CVE-2012-10057 Details
Description
Lattice Semiconductor ispVM System v18.0.2 contains a buffer overflow vulnerability in its handling of .xcf project files. When parsing the version attribute of the ispXCF XML tag, the application fails to properly validate input length, allowing a specially crafted file to overwrite memory on the stack. This can result in arbitrary code execution under the context of the user who opens the file. The vulnerability is triggered locally by opening a malicious .xcf file and does not require elevated privileges.
A stack-based buffer overflow vulnerability has been identified in Lattice Semiconductor ispVM System version 18.0.2. The issue arises in the application's processing of .xcf project files, specifically within the ispXCF XML tag. The vulnerability allows a specially crafted file to overwrite memory on the stack, potentially leading to arbitrary code execution under the user's context. Exploitation of this vulnerability requires the user to open the malicious .xcf file, and it does not necessitate elevated privileges.
Metrics
CVSS 4.0 Severity and Vector Strings:
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
Volerion
Assessed Aug 13, 2025CISA-ADP
Assessed Aug 14, 2025References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://raw.githubusercontent.com/rapid7/metasploit-framework/master/modules/exploits/windows/fileformat/ispvm_xcf_ispxcf.rb | CISA-ADP | ExploitMetasploit Framework (MSF) |
| https://www.exploit-db.com/exploits/18947 | CISA-ADP | Exploit |
| https://raw.githubusercontent.com/rapid7/metasploit-framework/master/modules/exploits/windows/fileformat/ispvm_xcf_ispxcf.rb | [email protected] | ExploitMetasploit Framework (MSF) |
| https://web.archive.org/web/20121014002756/http://secunia.com/advisories/48740/ | [email protected] | AdvisoryBundleExploit |
| https://www.exploit-db.com/exploits/18947 | [email protected] | Exploit |
| https://www.latticesemi.com/ispvm | [email protected] | Vendor |
| https://www.vulncheck.com/advisories/lattice-semiconductor-ispvm-system-xcf-file-handling-buffer-overflow | [email protected] | AdvisoryBundle |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-121 | Stack-based Buffer Overflow | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| Lattice Semiconductor ispVM System | All versions |
CPE
Remediation
| |
Change History
4 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 16, 2026 | CVE Modified | [email protected] |
| Jun 16, 2026 | CVE Modified | CISA-ADP |
| Aug 14, 2025 | CVE Modified | CISA-ADP |
| Aug 13, 2025 | New CVE Received | [email protected] |
Volerion