Описание
Heap-based buffer overflow in Tracker Software PDF-XChange before 2.5.208 allows remote attackers to execute arbitrary code via a crafted Define Huffman Table header in a JPEG image file stream in a PDF file.
Ссылки
- Broken Link
- Vendor Advisory
- Third Party AdvisoryVDB Entry
- PatchVendor Advisory
- VDB Entry
- Broken Link
- Vendor Advisory
- Third Party AdvisoryVDB Entry
- PatchVendor Advisory
- VDB Entry
Уязвимые конфигурации
Конфигурация 1Версия до 2.5.208.0 (исключая)
cpe:2.3:a:tracker-software:pdf-xchange_viewer:*:*:*:*:*:*:*:*
EPSS
Процентиль: 92%
0.08742
Низкий
9.3 Critical
CVSS2
Дефекты
CWE-119
Связанные уязвимости
github
больше 3 лет назад
Heap-based buffer overflow in Tracker Software PDF-XChange before 2.5.208 allows remote attackers to execute arbitrary code via a crafted Define Huffman Table header in a JPEG image file stream in a PDF file.
EPSS
Процентиль: 92%
0.08742
Низкий
9.3 Critical
CVSS2
Дефекты
CWE-119