Lucene search

K
osvGoogleOSV:USN-4642-1
HistoryNov 24, 2020 - 12:22 a.m.

pdfresurrect vulnerability

2020-11-2400:22:17
Google
osv.dev
7
pdfresurrect
memory operations
vulnerability
denial of service
arbitrary code execution
software

AI Score

7.3

Confidence

High

EPSS

0.001

Percentile

31.1%

It was discovered that PDFResurrect incorrectly handled certain memory
operations during PDF summary generation. An attacker could use this to
cause out-of-bounds writes, resulting in a denial of service (system crash)
or arbitrary code execution.

AI Score

7.3

Confidence

High

EPSS

0.001

Percentile

31.1%