First published: Fri Oct 19 2018(Updated: )
A vulnerability exists in the file reading procedure in Open Design Alliance Drawings SDK 2019Update1 on non-Windows platforms in which attackers could perform read operations past the end, or before the beginning, of the intended buffer. This can allow attackers to obtain sensitive information from process memory or cause a crash.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Opendesign Drawings Sdk | =2019-update1 | |
Oracle Outside In Technology | =8.5.3 | |
Oracle Outside In Technology | =8.5.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-18224 is a vulnerability in the file reading procedure in Open Design Alliance Drawings SDK 2019Update1.
CVE-2018-18224 has a severity level of 8.1, which is considered high.
CVE-2018-18224 affects Open Design Alliance Drawings SDK 2019Update1 and Oracle Outside In Technology versions 8.5.3 and 8.5.4.
An attacker can exploit CVE-2018-18224 to perform read operations past the end or before the beginning of the intended buffer, potentially obtaining sensitive information.
Additional information about CVE-2018-18224 can be found on the SecurityFocus, Open Design Alliance, and Oracle websites.