First published: Fri Oct 01 2021(Updated: )
CdrCore.dll in Corel DrawStandard 2020 22.0.0.474 is affected by an Out-of-bounds Read vulnerability when parsing a crafted file. An unauthenticated attacker could leverage this vulnerability to access unauthorized system memory in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious CDR file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Corel Coreldraw 2020 | =22.0.0.474 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this issue is CVE-2021-38107.
The affected software version is Corel DrawStandard 2020 22.0.0.474.
The severity rating of CVE-2021-38107 is 5.5 (medium).
This vulnerability occurs when a crafted file is parsed by CdrCore.dll in Corel DrawStandard 2020 22.0.0.474.
An unauthenticated attacker can exploit this vulnerability to access unauthorized system memory in the context of the current user.