PT-2018-16313 · Computerinsel · Photoline
Published
2018-08-01
·
Updated
2023-02-03
·
CVE-2018-3921
CVSS v3.1
8.8
High
| Vector | AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Computerinsel Photoline version 20.54
Description
A memory corruption issue exists in the PSD-parsing functionality. Processing a specially crafted PSD image can lead to a stack overflow, allowing an attacker to overwrite arbitrary data and potentially gain code execution.
Recommendations
For version 20.54, update to a newer version that contains a fix for this issue to prevent potential code execution by an attacker.
Exploit
Fix
Memory Corruption
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Photoline