An exploitable code execution vulnerability exists in the ANI file format parser of Leadtools 20. A specially crafted ANI file can cause a buffer overflow resulting in remote code execution. An attacker can provide a malicious file to trigger this vulnerability.
References
Link Resource
https://talosintelligence.com/vulnerability_reports/TALOS-2020-1009 Exploit Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: talos

Published: 2020-07-01T15:11:22

Updated: 2020-07-01T15:11:22

Reserved: 2020-01-07T00:00:00


Link: CVE-2020-6089

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2020-07-01T16:15:13.197

Modified: 2022-05-12T17:22:35.460


Link: CVE-2020-6089

JSON object: View

cve-icon Redhat Information

No data.

CWE