Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gvwj-prfg-6229

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Adobe FrameMaker version 2019.0.6 (and earlier versions) lacks proper validation of the length of user-supplied data prior to copying it to a fixed-length stack-based buffer. This could be exploited to execute arbitrary code with the privileges of the current user. User interaction is required to exploit this vulnerability in that the target must open a malicious FrameMaker file.

Adobe FrameMaker version 2019.0.6 (and earlier versions) lacks proper validation of the length of user-supplied data prior to copying it to a fixed-length stack-based buffer. This could be exploited to execute arbitrary code with the privileges of the current user. User interaction is required to exploit this vulnerability in that the target must open a malicious FrameMaker file.

EPSS

Процентиль: 93%
0.11041
Средний

Связанные уязвимости

CVSS3: 7.8
nvd
больше 5 лет назад

Adobe FrameMaker version 2019.0.6 (and earlier versions) lacks proper validation of the length of user-supplied data prior to copying it to a fixed-length stack-based buffer. This could be exploited to execute arbitrary code with the privileges of the current user. User interaction is required to exploit this vulnerability in that the target must open a malicious FrameMaker file.

CVSS3: 8.8
fstec
больше 5 лет назад

Уязвимость настольной издательской системы Adobe Framemaker, вызванная переполнением буфера на стеке, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 93%
0.11041
Средний