Back to CVE List

CVE-2018-25279

MEDIUM SEVERITY

CVSS Score & Metrics

Base Score
6.2 / 10
Vector String
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Vulnerability Description

jiNa OCR Image to Text 1.0 contains a denial of service vulnerability that allows local attackers to crash the application by processing a malformed PNG file. Attackers can create a specially crafted PNG file with an oversized buffer and trigger the crash when the application attempts to convert the file to PDF.

Vulnerability Details

Published Date
Last Modified
CWE ID
CWE-789
Source
NVD
Vendor
Convertimagetotext
Product
jiNa OCR Image to Text

External References

Discussion (0)

Add Comment

No comments yet. Be the first!