Security Advisory

CVE-2018-17141

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2018-09-21 17:00:00
Last updated 2024-08-05 10:39:59
Assigner mitre
State PUBLISHED

Description

HylaFAX 6.0.6 and HylaFAX+ 5.6.0 allow remote attackers to execute arbitrary code via a dial-in session that provides a FAX page with the JPEG bit enabled, which is mishandled in FaxModem::writeECMData() in the faxd/CopyQuality.c++ file.