PT-2013-1733 · Coolpdf · Coolpdf
Published
2013-01-26
·
Updated
2013-01-28
·
CVE-2012-4914
CVSS v2.0
9.3
High
| Vector | AV:N/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
CoolPDF version 3.0.2.256
Description
The issue is a stack-based buffer overflow in the reader component, which can be triggered by a remote attacker using a specially crafted PDF document containing a malicious stream. This could potentially allow the execution of arbitrary code.
Recommendations
For CoolPDF version 3.0.2.256, consider updating to a newer version that addresses this issue, as using a crafted PDF document could lead to arbitrary code execution. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Coolpdf