CVE-2021-38097: High severity Corel PDF Fusion vulnerability
Corel PDF Fusion 2.6.2.0 is affected by an Out-of-bounds Write vulnerability when parsing a crafted file. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious PDF file.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-38097?
CVE-2021-38097 is an Out-of-bounds Write vulnerability in Corel PDF Fusion 2.6.2.0 that allows arbitrary code execution.
How does CVE-2021-38097 affect Corel PDF Fusion?
CVE-2021-38097 affects Corel PDF Fusion 2.6.2.0 and can be exploited by an unauthenticated attacker to execute arbitrary code.
What is the severity of CVE-2021-38097?
CVE-2021-38097 has a severity rating of 7.8 (Critical).
How can an attacker exploit CVE-2021-38097?
An attacker can exploit CVE-2021-38097 by crafting a malicious file and tricking a user into opening it in Corel PDF Fusion 2.6.2.0.
Are there any known fixes for CVE-2021-38097?
At the time of writing, there are no known fixes or patches available for CVE-2021-38097. It is recommended to update to the latest version of Corel PDF Fusion when a fix becomes available.