Power PDF File Parsing Use-After-Free Remote Code Execution Vulnerability
CVE-2023-44435
What is CVE-2023-44435?
A vulnerability exists in Kofax Power PDF related to the parsing of PDF files, which can lead to remote code execution. The flaw arises due to the absence of proper validation for object existence before executing operations on it. This allows attackers to craft malicious PDF files that, when opened by the user, can execute arbitrary code in the context of the affected application. Effective exploitation requires user interaction, making it essential for users to be cautious when dealing with suspicious files or links.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Power PDF 5.0.0.57 (5.0.0.10.0.23307)
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved