Summary
This host is installed with Corel PDF Fusion and is prone to multiple vulnerabilities.
Impact
Successful exploitation will allow remote attacker to execute arbitrary code, cause a denial of service (application crash) and allows local users to gain privileges via a Trojan horse wintab32.dll file.
Impact Level: System/Application
Solution
No Solution is available as of 15 October, 2013 Information regarding this issue will updated once the solution details are available.
http://www.corel.com/corel/product/index.jsp?pid=prod4100140
Insight
Multiple flaws are due to,
- The application loads a library (wintab32.dll) in an insecure manner. This can be exploited to load arbitrary libraries by tricking a user into opening a '.pdf' or '.xps' file.
- A boundary error exists when parsing names in ZIP directory entries of a XPS file and can be exploited to cause a stack-based buffer overflow by tricking a user into opening a specially crafted XPS file.
Affected
Corel PDF Fusion 1.11
Detection
Get the installed version with the help of detect NVT and check the version is vulnerable or not.
References
Severity
Classification
-
CVE CVE-2013-0742, CVE-2013-3248 -
CVSS Base Score: 9.3
AV:N/AC:M/Au:N/C:C/I:C/A:C
Related Vulnerabilities