CVE-2020-13572

Publication date

2021-02-10 21:45:35

Family

talos

State

PUBLISHED

Description

A heap overflow vulnerability exists in the way the GIF parser decodes LZW compressed streams in Accusoft ImageGear 19.8. A specially crafted malformed file can trigger a heap overflow, which can result in arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability.