First published: Mon Feb 19 2018(Updated: )
An issue was discovered in pixHtmlViewer in prog/htmlviewer.c in Leptonica before 1.75.3. Unsanitized input (rootname) can overflow a buffer, leading potentially to arbitrary code execution or possibly unspecified other impact.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Leptonica | <1.75.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-7247 has a severity rating that indicates a potential for arbitrary code execution due to buffer overflow.
To fix CVE-2018-7247, upgrade Leptonica to version 1.75.3 or newer.
CVE-2018-7247 affects Leptonica versions prior to 1.75.3.
CVE-2018-7247 is a buffer overflow vulnerability caused by unsanitized input in the pixHtmlViewer component.
Yes, CVE-2018-7247 can potentially lead to arbitrary code execution, which may result in data breaches or other security impacts.