Cam2pc contains an integer overflow condition in cam2pc.exe that is triggered as user-supplied input is not properly validated when processing BITMAPINFOHEADER(biHeight) values. This may allow a context-dependent attacker to cause a heap-based buffer overflow, resulting in a denial of service or potentially allowing the execution of arbitrary code.
Disclosure Timeline:
Disclosure Date :2013-03-12
Vendor Informed Date :2013-01-15