An out-of-bounds write vulnerability exists in the TIFF header count-processing functionality of Accusoft ImageGear 19.8. A specially crafted malformed file can lead to memory corruption. An attacker can provide a malicious file to trigger this vulnerability.
The product does not correctly calculate the size to be used when allocating a buffer, which could lead to a buffer overflow.
The product does not check or incorrectly checks for unusual or exceptional conditions that are not expected to occur frequently during day to day operation of the product.
Link | Tags |
---|---|
https://talosintelligence.com/vulnerability_reports/TALOS-2021-1227 | third party advisory exploit |