First published: Mon Sep 25 2023(Updated: )
An out-of-bounds write vulnerability exists in the allocate_buffer_for_jpeg_decoding functionality of Accusoft ImageGear 20.1. A specially crafted malformed file can lead to memory corruption. An attacker can provide a malicious file to trigger this vulnerability.
Credit: talos-cna@cisco.com talos-cna@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
AccuSoft ImageGear | =20.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-40163 is critical with a CVSS score of 9.8.
CVE-2023-40163 affects Accusoft ImageGear 20.1 by allowing an attacker to provide a specially crafted file that can lead to memory corruption.
The impact of CVE-2023-40163 is an out-of-bounds write vulnerability that can result in memory corruption.
Yes, a fix is available for CVE-2023-40163. It is recommended to update to the latest version of Accusoft ImageGear.
More information about CVE-2023-40163 can be found at the following link: https://talosintelligence.com/vulnerability_reports/TALOS-2023-1836