CVE-2016-8388

Severity CVSS v4.0:
Pending analysis
Type:
CWE-125 Out-of-bounds Read
Publication date:
28/02/2017
Last modified:
20/04/2025

Description

An exploitable arbitrary heap-overwrite vulnerability exists within Iceni Argus. When it attempts to convert a malformed PDF to XML, it will explicitly trust an index within the specific font object and use it to write the font's name to a single object within an array of objects.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:iceni:argus:6.6.04:*:*:*:*:*:*:*