Back
CVE-2005-0770
Format string vulnerability in DataRescue Interactive Disassembler and Debugger (IDA) Pro 4.7.0.830 allows remote attackers or local users to cause a denial of service (CPU consumption or application crash) and possibly execute arbitrary code via format string specifiers in a dynamic link library (DLL) name.
Published: May 2, 2005
Modified: Jun 16, 2026
CVSS Metrics
Affected Products (1)
| Vendor | Product | Version |
|---|---|---|
| datarescue | ida_pro | 4.7.0.830 |
GitHub Security Advisory GHSA-wjvc-3p76-7rm7
Format string vulnerability in DataRescue Interactive Disassembler and Debugger (IDA) Pro 4.7.0...
References (8)
- http://marc.info/?l=bugtraq&m=111100269512216&w=2
- http://pb.specialised.info/all/adv/ida-debugger-adv.txt Exploit
- http://secunia.com/advisories/14610 Patch, Vendor Advisory
- http://www.datarescue.com/cgi-local/ultimatebb.cgi?ubb=get_topic%3Bf=2%3Bt=000155%3Bp=0
- http://marc.info/?l=bugtraq&m=111100269512216&w=2
- http://pb.specialised.info/all/adv/ida-debugger-adv.txt Exploit
- http://secunia.com/advisories/14610 Patch, Vendor Advisory
- http://www.datarescue.com/cgi-local/ultimatebb.cgi?ubb=get_topic%3Bf=2%3Bt=000155%3Bp=0
Risk Scores
CVSS Score
7.5 / 10
EPSS Score
3.25%
Top 13% most likely to be exploited
Threat Score
31 / 100
Data Sources
NVD
EPSS
GitHub