Security Advisory

CVE-2016-8388

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2017-02-28 15:00:00
Last updated 2024-08-06 02:20:31
Assigner talos
CVSS score 8.8
State PUBLISHED

Description

An exploitable arbitrary heap-overwrite vulnerability exists within Iceni Argus. When it attempts to convert a malformed PDF to XML, it will explicitly trust an index within the specific font object and use it to write the font's name to a single object within an array of objects.