JPX Fragment List (flst) box vulnerability in Kakadu 7.9 allows an attacker to exfiltrate local and remote files reachable by a server if the server allows the attacker to upload a specially-crafted the image that is displayed back to the attacker.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: Google

Published: 2023-12-20T13:11:39.208Z

Updated: 2023-12-20T13:11:39.208Z

Reserved: 2023-12-06T17:20:19.819Z


Link: CVE-2023-6562

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2023-12-20T13:15:07.260

Modified: 2023-12-28T20:00:23.110


Link: CVE-2023-6562

JSON object: View

cve-icon Redhat Information

No data.