CVE-2023-39936: Ashlar-Vellum Graphite Out-of-bounds Read
In Ashlar-Vellum Graphite v13.0.48, the affected application lacks proper validation of user-supplied data when parsing VC6 files. This could lead to an out-of-bounds read. An attacker could leverage this vulnerability to execute arbitrary code in the context of the current process.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2023-39936?
CVE-2023-39936 is a vulnerability in Ashlar-Vellum Graphite v13.0.48 that allows an attacker to execute arbitrary code by exploiting an out-of-bounds read vulnerability.
How severe is CVE-2023-39936?
CVE-2023-39936 has a severity rating of 7.8 (high).
What is the affected software version of CVE-2023-39936?
The affected software version of CVE-2023-39936 is Ashlar-Vellum Graphite v13.0.48.
How can an attacker leverage CVE-2023-39936?
An attacker can leverage CVE-2023-39936 to execute arbitrary code in the context of the current process.
How can I fix CVE-2023-39936?
To fix CVE-2023-39936, update Ashlar-Vellum Graphite to a version that includes the necessary security patches.