RCE Security has discovered a vulnerability in GetGo Download Manager, which can be exploited by malicious people to compromise a vulnerable system.
The vulnerability is caused due to a boundary error when processing HTTP response headers, which can be exploited to cause a stack-based buffer overflow via a specially crafted HTTP response.
Successful exploitation may allow execution of arbitrary code.
The vulnerability is confirmed in version 4.9.0.1982. Other versions may also be affected.