An exploitable integer overflow vulnerability exists in the JPEG 2000 image parsing functionality of freedesktop.org Poppler 0.53.0. A specially crafted PDF file can lead to an integer overflow causing out of bounds memory overwrite on the heap resulting in potential arbitrary code execution. To trigger this vulnerability, a victim must open the malicious PDF in an application using this library.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: talos
Published: 2017-07-12T17:00:00Z
Updated: 2024-09-16T17:57:59.150Z
Reserved: 2016-12-01T00:00:00
Link: CVE-2017-2820
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2017-07-12T17:29:00.530
Modified: 2023-01-27T20:57:22.373
Link: CVE-2017-2820
Redhat