Vulnerable Systems:
* ACDSee CUR 5.1 PCT Image Processing
Insufficient validation in ID_ICO.apl when copying colours from cursors in .CUR files can be exploited to cause a heap-based buffer overflow via a .CUR file containing a specially crafted "ColorsImportant" field value.
The vulnerabilities are confirmed in version 5.1 (Build 137). Other versions may also be affected.