Security Advisory

CVE-2020-13572

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-02-10 21:45:35
Last updated 2024-08-04 12:25:16
Assigner talos
State PUBLISHED

Description

A heap overflow vulnerability exists in the way the GIF parser decodes LZW compressed streams in Accusoft ImageGear 19.8. A specially crafted malformed file can trigger a heap overflow, which can result in arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability.