Description
JPX Fragment List (flst) box vulnerability in Kakadu 7.9 allows an attacker to exfiltrate local and remote files reachable by a server if the server allows the attacker to upload a specially-crafted the image that is displayed back to the attacker.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-58791 | JPX Fragment List (flst) box vulnerability in Kakadu 7.9 allows an attacker to exfiltrate local and remote files reachable by a server if the server allows the attacker to upload a specially-crafted the image that is displayed back to the attacker. |
References
History
No history.
Status: PUBLISHED
Assigner: Google
Published:
Updated: 2024-08-02T08:35:14.693Z
Reserved: 2023-12-06T17:20:19.819Z
Link: CVE-2023-6562
No data.
Status : Modified
Published: 2023-12-20T13:15:07.260
Modified: 2024-11-21T08:44:06.340
Link: CVE-2023-6562
No data.
OpenCVE Enrichment
No data.
EUVD