A vulnerability exists in the file reading procedure in Open Design Alliance Drawings SDK 2019Update1 on non-Windows platforms in which attackers could perform read operations past the end, or before the beginning, of the intended buffer. This can allow attackers to obtain sensitive information from process memory or cause a crash.
References
Link | Resource |
---|---|
http://www.securityfocus.com/bid/105603 | Third Party Advisory VDB Entry |
https://www.opendesign.com/security-advisories | Vendor Advisory |
https://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html | Vendor Advisory |
http://www.securityfocus.com/bid/105603 | Third Party Advisory VDB Entry |
https://www.opendesign.com/security-advisories | Vendor Advisory |
https://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html | Vendor Advisory |
Configurations
History
21 Nov 2024, 03:55
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.securityfocus.com/bid/105603 - Third Party Advisory, VDB Entry | |
References | () https://www.opendesign.com/security-advisories - Vendor Advisory | |
References | () https://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html - Vendor Advisory |
Information
Published : 2018-10-19 22:29
Updated : 2024-11-21 03:55
NVD link : CVE-2018-18224
Mitre link : CVE-2018-18224
CVE.ORG link : CVE-2018-18224
JSON object : View
Products Affected
oracle
- outside_in_technology
opendesign
- drawings_sdk
CWE
CWE-125
Out-of-bounds Read