PT-2018-17560 · Pdf Xchange · Pdf-Xchange Viewer+1

Sebastian Feldmann

·

Publicado

2018-01-31

·

Atualizado

2019-10-03

·

CVE-2018-6462

CVSS v3.1

7.8

Alta

VetorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions PDF-XChange Viewer and Viewer AX SDK versions prior to 2.5.322.8
Description The issue arises from the mishandling of conversion from YCC to RGB color spaces, where calculations are based on 1 bit per component (bpc) instead of 8 bpc. This could potentially allow remote attackers to execute arbitrary code through a crafted PDF document.
Recommendations For versions prior to 2.5.322.8, update to version 2.5.322.8 or later to resolve the issue.

Correção

Memory Corruption

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2018-6462

Produtos afetados

Pdf-Xchange Viewer
Viewer Ax Sdk