PT-2017-2684 · Microsoft · Windows Pdf Library+1

Published

2017-08-08

·

Updated

2017-08-15

·

CVE-2017-0293

CVSS v2.0

7.6

High

VectorAV:N/AC:H/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Microsoft Windows PDF Library versions prior to the fixed version
Description The issue is caused by an out-of-bounds operation in memory, allowing a remote attacker to execute arbitrary code when objects in memory are improperly handled. This can be exploited when the system incorrectly processes objects, potentially leading to remote code execution.
Recommendations For Microsoft Windows PDF Library, update to a version that includes the fix for this issue to prevent remote code execution. As a temporary workaround, consider restricting access to the Microsoft Windows PDF Library until a patch is available.

Fix

RCE

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2017-01912
CVE-2017-0293
ZDI-17-636

Affected Products

Windows Pdf Library
Windows