Out-Of-Bounds Read Vulnerability in Soda PDF Desktop by LULU Software
CVE-2025-14408
3.3LOW
What is CVE-2025-14408?
The vulnerability in Soda PDF Desktop involves an Out-Of-Bounds Read during PDF file parsing, which could allow remote attackers to disclose sensitive data. This weakness arises from improper validation of user-supplied input, leading to potential data leakage. To exploit this issue, user interaction is required, as the victim must either visit a malicious website or open a compromised PDF file. Attackers may combine this vulnerability with other exploits to execute arbitrary code within the application's process, posing serious security risks.
Affected Version(s)
Desktop 14.0.509.23030
