An integer overflow vulnerability exists in the way...
High severity
Unreviewed
Published
Aug 6, 2022
to the GitHub Advisory Database
•
Updated Jul 7, 2023
Description
Published by the National Vulnerability Database
Aug 5, 2022
Published to the GitHub Advisory Database
Aug 6, 2022
Last updated
Jul 7, 2023
An integer overflow vulnerability exists in the way ESTsoft Alyac 2.5.8.544 parses OLE files. A specially-crafted OLE file can lead to a heap buffer overflow, which can result in arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability.
References