Description
An exploitable arbitrary heap-overwrite vulnerability exists within Iceni Argus. When it attempts to convert a malformed PDF to XML, it will explicitly trust an index within the specific font object and use it to write the font's name to a single object within an array of objects.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2016-9236 | An exploitable arbitrary heap-overwrite vulnerability exists within Iceni Argus. When it attempts to convert a malformed PDF to XML, it will explicitly trust an index within the specific font object and use it to write the font's name to a single object within an array of objects. |
References
History
No history.
Status: PUBLISHED
Assigner: talos
Published:
Updated: 2024-08-06T02:20:31.172Z
Reserved: 2016-09-29T00:00:00.000Z
Link: CVE-2016-8388
No data.
Status : Modified
Published: 2017-02-28T15:59:00.173
Modified: 2026-05-13T00:24:29.033
Link: CVE-2016-8388
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD