![]() |
Home ▼ Bookkeeping
Online ▼ Security
Audits ▼
Managed
DNS ▼
About
Order
FAQ
Acceptable Use Policy
Dynamic DNS Clients
Configure Domains Dyanmic DNS Update Password Network
Monitor ▼
Enterprise Package
Advanced Package
Standard Package
Free Trial
FAQ
Price/Feature Summary
Order/Renew
Examples
Configure/Status Alert Profiles | ||
CVE ID: | CVE-2017-2920 |
Description: | An memory corruption vulnerability exists in the .SVG parsing functionality of Computerinsel Photoline 20.02. A specially crafted .SVG file can cause a vulnerability resulting in memory corruption, which can potentially lead to arbitrary code execution. An attacker can send a specific .SVG file to trigger this vulnerability. |
Test IDs: | None available |
Cross References: |
Common Vulnerability Exposure (CVE) ID: CVE-2017-2920 BugTraq ID: 101186 http://www.securityfocus.com/bid/101186 https://github.com/libofx/libofx/commit/a70934eea95c76a7737b83773bffe8738935082d https://security.gentoo.org/glsa/201908-26 https://www.talosintelligence.com/vulnerability_reports/TALOS-2017-0427 https://www.talosintelligence.com/vulnerability_reports/TALOS-2017-0427 |