Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:26112
HistoryAug 06, 2020 - 9:31 p.m.

Arbitrary Code Execution

2020-08-0621:31:09
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
10

0.001 Low

EPSS

Percentile

46.2%

file is vulnerable to arbitrary code execution. The cdf_read_property_info function in cdf.c does not restrict the number of CDF_VECTOR elements, resulting a heap-based buffer overflow (4-byte out-of-bounds write).