Vulnerability Description
An exploitable code execution vulnerability exists in the rendering functionality of Nitro Pro 13.13.2.242 and 13.16.2.300. When drawing the contents of a page and selecting the stroke color from an 'ICCBased' colorspace, the application will read a length from the file and use it as a loop sentinel when writing data into the member of an object. Due to the object member being a buffer of a static size allocated on the heap, this can result in a heap-based buffer overflow. A specially crafted document must be loaded by a victim in order to trigger this vulnerability.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Gonitro | Nitro Pro | 13.13.2.242 |
Related Weaknesses (CWE)
References
- https://talosintelligence.com/vulnerability_reports/TALOS-2020-1084ExploitThird Party Advisory
- https://talosintelligence.com/vulnerability_reports/TALOS-2020-1084ExploitThird Party Advisory
FAQ
What is CVE-2020-6146?
CVE-2020-6146 is a vulnerability with a CVSS score of 8.8 (HIGH). An exploitable code execution vulnerability exists in the rendering functionality of Nitro Pro 13.13.2.242 and 13.16.2.300. When drawing the contents of a page and selecting the stroke color from an '...
How severe is CVE-2020-6146?
CVE-2020-6146 has been rated HIGH with a CVSS base score of 8.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-6146?
Check the references section above for vendor advisories and patch information. Affected products include: Gonitro Nitro Pro.