Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-102042
HistoryDec 16, 2021 - 12:00 a.m.

Bentley View J2K File Parsing Heap Buffer Overflow Remote Code Execution Vulnerability

2021-12-1600:00:00
China National Vulnerability Database
www.cnvd.org.cn
11
bentley view
j2k
file parsing
security vulnerability
remote code execution
heap buffer overflow
bentley systems
inc.

EPSS

0.003

Percentile

66.5%

Bentley View, a free viewer from Bentley Systems, Inc. has a security vulnerability in Bentley View J2K file parsing. The upstairs is due to a failure to properly validate the length of user-supplied data before copying it to the heap buffer. An attacker could exploit this vulnerability to execute code in the context of the current process.

EPSS

0.003

Percentile

66.5%

Related for CNVD-2021-102042