Out-Of-Bounds Read Vulnerability in PDF-XChange Editor
CVE-2024-8824
5.5MEDIUM
What is CVE-2024-8824?
An information disclosure vulnerability exists in PDF-XChange Editor due to improper validation when parsing JB2 files. This flaw can lead to an out-of-bounds read, enabling attackers to exploit the vulnerability provided that the user opens a malicious file or visits a compromised webpage. An attacker could potentially gather sensitive information from the affected installations, and in conjunction with other vulnerabilities, could facilitate arbitrary code execution in the context of the running process.