CVE-2018-3855: Double Free
Published Apr 26, 2018
·Updated
In Hyland Perceptive Document Filters 11.4.0.2647 - x86/x64 Windows/Linux, a crafted OpenDocument document can lead to a SkCanvas object double free resulting in direct code execution.
Affected Software
2 affected components
Hyland Perceptive Document Filters=11.2.0.1732
Hyland Perceptive Document Filters=11.4.0.2647
Event History
Apr 26, 2018
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2018-3855?
CVE-2018-3855 has a critical severity level due to its potential for direct code execution.
2
How do I fix CVE-2018-3855?
To fix CVE-2018-3855, upgrade to the latest version of Hyland Perceptive Document Filters that addresses this vulnerability.
3
What systems are affected by CVE-2018-3855?
CVE-2018-3855 affects Hyland Perceptive Document Filters version 11.2.0.1732 and 11.4.0.2647 on both Windows and Linux platforms.
4
What type of vulnerability is CVE-2018-3855?
CVE-2018-3855 is a memory management vulnerability that involves a double free of a SkCanvas object.
5
Can CVE-2018-3855 be exploited remotely?
Yes, CVE-2018-3855 can be exploited remotely through crafted OpenDocument files.