Information Disclosure Vulnerability in PDF-XChange Editor JB2 File Parsing
CVE-2024-8823
5.5MEDIUM
What is CVE-2024-8823?
An information disclosure vulnerability has been identified in PDF-XChange Editor related to the parsing of JB2 files. The flaw arises due to inadequate validation of user-supplied data, which allows attackers to read beyond the end of an allocated object. Successful exploitation necessitates user interaction, requiring potential victims to visit a malicious webpage or open a specially crafted file. This vulnerability can be leveraged in conjunction with other weaknesses to execute arbitrary code within the context of the affected process, posing significant risks to users.