Vulnerability Description
Stack-based buffer overflow in AloahaPDFViewer 5.0.0.7 and earlier in Aloaha PDF Suite FREE allows remote attackers to execute arbitrary code via a crafted PDF file.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Aloaha | Aloaha Pdf Suite Free | - |
| Aloaha | Aloahapdfviewer | <= 5.0.0.7 |
Related Weaknesses (CWE)
References
- http://archives.neohapsis.com/archives/bugtraq/2013-08/0179.htmlExploit
- http://secunia.com/advisories/54585Vendor Advisory
- http://www.coresecurity.com/advisories/aloaha-pdf-suite-buffer-overflow-vulnerabExploit
- http://www.securityfocus.com/bid/62036
- http://archives.neohapsis.com/archives/bugtraq/2013-08/0179.htmlExploit
- http://secunia.com/advisories/54585Vendor Advisory
- http://www.coresecurity.com/advisories/aloaha-pdf-suite-buffer-overflow-vulnerabExploit
- http://www.securityfocus.com/bid/62036
FAQ
What is CVE-2013-4978?
CVE-2013-4978 is a vulnerability with a CVSS score of 9.3 (HIGH). Stack-based buffer overflow in AloahaPDFViewer 5.0.0.7 and earlier in Aloaha PDF Suite FREE allows remote attackers to execute arbitrary code via a crafted PDF file.
How severe is CVE-2013-4978?
CVE-2013-4978 has been rated HIGH with a CVSS base score of 9.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2013-4978?
Check the references section above for vendor advisories and patch information. Affected products include: Aloaha Aloaha Pdf Suite Free, Aloaha Aloahapdfviewer.