An exploitable code execution vulnerability exists in the TIFF fillinraster function of the igcore19d.dll library of Accusoft ImageGear 19.4, 19.5 and 19.6. A specially crafted TIFF file can cause an out-of-bounds write, resulting in remote code execution. An attacker can provide a malicious file to trigger this vulnerability.
2020-05-06T13:15:14.917
2024-11-21T05:35:05.077
Modified
CVSSv3.1: 8.8 (HIGH)
AV:N/AC:M/Au:N/C:P/I:P/A:P
8.6
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | accusoft | imagegear | 19.4.0 | Yes |
Application | accusoft | imagegear | 19.5.0 | Yes |
Application | accusoft | imagegear | 19.6.0 | Yes |