ERDAS ER Viewer rf_report_error Buffer Overflow Exploit

A Buffer Overflow exists within ERDAS ER Viewer due to a boundary error within the rf_report_error() function in (ermapper_u.dll) when parsing a specially crafted ERS file. This module runs a malicious web site on the Core Impact Console and waits for an unsuspecting user to trigger the exploit by connecting to the web site.
Exploit Platform
Exploit Type
Product Name