HTTP: Corel PDF Fusion XPS Stack Buffer Overflow

This signature detects attempts to exploit a known vulnerability in the Corel PDF Fusion. A successful attack can lead to a buffer overflow and arbitrary remote code execution within the context of the application.

Extended Description

Untrusted search path vulnerability in Corel PDF Fusion 1.11 allows local users to gain privileges via a Trojan horse wintab32.dll file in the current working directory, as demonstrated by a directory that contains a .pdf or .xps file.

Affected Products

Corel pdf_fusion

Short Name
HTTP:MISC:COREL-PDF-FUSION-XPS
Severity
Critical
Recommended
False
Recommended Action
None
Category
HTTP
Keywords
Buffer CVE-2013-3248 Corel Fusion Overflow PDF Stack XPS bid:61010
Release Date
08/07/2013
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3761
False Positive
Rarely
Vendors

Corel

CVSS Score

9.3

Found a potential security threat?