CVE Published: 19/07/2018 |
CVE Updated: 17/09/2024 |
CVE Year: 2018 Source: talos |
Vendor: ACD Systems |
Product: Canvas Draw Status : PUBLISHED
CVE-2018-3871 Description
An exploitable out-of-bounds write exists in the PCX parsing functionality of Canvas Draw version 4.0.0. A specially crafted PCX image processed via the application can lead to an out-of-bounds write, overwriting arbitrary data. An attacker can deliver a PCX image to trigger this vulnerability and gain code execution. A different vulnerability than CVE-2018-3870.