Impact
HD Tune Pro version 5.70 contains a stack-based buffer overflow that lets a local user crash the application by entering an overly long string in the folder/file name field of the Save dialog. The result is a denial of service that terminates the program, disrupting normal use. The weakness is a classic CWE-120 buffer overflow.
Affected Systems
The affected system is HD Tune Pro 5.70 from the vendor HD Tune. No other versions or products are listed as vulnerable.
Risk and Exploitability
The CVSS score of 6.9 indicates a medium severity vulnerability that can be exploited only by a local attacker able to run HD Tune Pro. The EPSS score of less than 1 % shows very low exploitation probability, and the vulnerability is not listed in the CISA KEV catalog. Because the flaw requires local interaction, the risk is confined to environments where untrusted users can operate the application.
OpenCVE Enrichment