Описание
Investintech.com SlimPDF Reader does not prevent faulting-instruction data from affecting write operations, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PDF document.
Ссылки
- US Government Resource
- US Government Resource
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:investintech:slimpdf_reader:*:*:*:*:*:*:*:*
EPSS
Процентиль: 86%
0.03053
Низкий
9.3 Critical
CVSS2
Дефекты
CWE-399
Связанные уязвимости
github
больше 3 лет назад
Investintech.com SlimPDF Reader does not prevent faulting-instruction data from affecting write operations, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PDF document.
EPSS
Процентиль: 86%
0.03053
Низкий
9.3 Critical
CVSS2
Дефекты
CWE-399