Code Execution Vulnerability in Lexmark Perceptive Document Filters
CVE-2017-2822

7.5HIGH

Key Information:

Vendor
Lexmark
Vendor
CVE Published:
5 September 2017

Summary

An exploitable code execution vulnerability exists in the image rendering functionality of Lexmark Perceptive Document Filters 11.3.0.2400. This issue can be triggered by a specially crafted PDF file, leading to the execution of user-controlled data due to a function call on a corrupted DCTStream. Attackers can leverage this vulnerability to execute arbitrary code. Proper mitigations should be implemented to safeguard against such crafted attacks.

Affected Version(s)

Perceptive Document Filters 11.3.0.2400

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.