CVE-2018-25279
MEDIUM SEVERITYCVSS Score & Metrics
Base Score
6.2 / 10
Vector String
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Vulnerability Description
jiNa OCR Image to Text 1.0 contains a denial of service vulnerability that allows local attackers to crash the application by processing a malformed PNG file. Attackers can create a specially crafted PNG file with an oversized buffer and trigger the crash when the application attempts to convert the file to PDF.
Vulnerability Details
Published Date
Last Modified
CWE ID
CWE-789
Source
NVD
Vendor
Convertimagetotext
Product
jiNa OCR Image to Text
Discussion (0)
Add Comment
No comments yet. Be the first!