Beveiligingsadvies

CVE-2016-8388

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2017-02-28 15:00:00
Laatst bijgewerkt 2024-08-06 02:20:31
Toegewezen door talos
CVSS-score 8.8
Status PUBLISHED

Beschrijving

An exploitable arbitrary heap-overwrite vulnerability exists within Iceni Argus. When it attempts to convert a malformed PDF to XML, it will explicitly trust an index within the specific font object and use it to write the font's name to a single object within an array of objects.