ZDI-CAN-18913: ZDI-23-868: (0Day) Ashlar-Vellum Graphite VC6 File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
Published Jun 15, 2023
·Updated
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ashlar-Vellum Graphite. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
Affected Software
1 affected component
Ashlar-Vellum Graphite
Event History
Jun 15, 2023
Advisory Published
05:00 AM
Data Sourced
05:00 AM
Description
May 3, 2024
Advisory Published
via ZDI·02:07 AM
Frequently Asked Questions
1
What is the severity of ZDI-CAN-18913?
The severity of ZDI-CAN-18913 is significant due to its potential for remote code execution.
2
How do I fix ZDI-CAN-18913?
To fix ZDI-CAN-18913, update Ashlar-Vellum Graphite to the latest version provided by the vendor.
3
Can ZDI-CAN-18913 be exploited without user interaction?
No, ZDI-CAN-18913 requires user interaction, such as visiting a malicious page or opening a malicious file.
4
What types of systems are affected by ZDI-CAN-18913?
ZDI-CAN-18913 affects installations of Ashlar-Vellum Graphite.
5
What are the potential consequences of ZDI-CAN-18913?
The potential consequences of ZDI-CAN-18913 include unauthorized remote code execution on affected systems.