PT-2017-2684 · Microsoft · Windows Pdf Library+1
Published
2017-08-08
·
Updated
2017-08-15
·
CVE-2017-0293
CVSS v2.0
7.6
High
| Vector | AV:N/AC:H/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Microsoft Windows PDF Library versions prior to the fixed version
Description
The issue is caused by an out-of-bounds operation in memory, allowing a remote attacker to execute arbitrary code when objects in memory are improperly handled. This can be exploited when the system incorrectly processes objects, potentially leading to remote code execution.
Recommendations
For Microsoft Windows PDF Library, update to a version that includes the fix for this issue to prevent remote code execution.
As a temporary workaround, consider restricting access to the Microsoft Windows PDF Library until a patch is available.
Fix
RCE
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Windows Pdf Library
Windows