CVE-2021-21824: Critical severity accusoft imagegear vulnerability
Published Jun 11, 2021
·Updated
An out-of-bounds write vulnerability exists in the JPG HandleJPEG420 functionality of Accusoft ImageGear 19.9. A specially crafted malformed file can lead to memory corruption. An attacker can provide a malicious file to trigger this vulnerability.
Affected Software
1 affected component
Accusoft ImageGear=19.9
Event History
Jun 11, 2021
CVE Published
via MITRE·04:12 PM
Data Sourced
via MITRE·04:12 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID of this vulnerability?
The vulnerability ID is CVE-2021-21824.
2
What is the severity of CVE-2021-21824?
The severity of CVE-2021-21824 is critical with a CVSS score of 9.8.
3
What is the affected software?
The affected software is AccuSoft ImageGear version 19.9.
4
How does the vulnerability occur?
The vulnerability occurs due to an out-of-bounds write in the JPG Handle_JPEG420 functionality of AccuSoft ImageGear.
5
What is the potential impact of this vulnerability?
A specially crafted malformed file can lead to memory corruption, potentially allowing an attacker to execute arbitrary code.