Vulnerabilities > CVE-2018-6641 - Use After Free vulnerability in Wiris Mathtype 6.9C
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
HIGH Integrity impact
HIGH Availability impact
HIGH Summary
An Arbitrary Free (Remote Code Execution) issue was discovered in Design Science MathType 6.9c. Crafted input can overwrite a structure, leading to a function call with an invalid parameter, and a subsequent free of important data such as a function pointer or list pointer. This is fixed in 6.9d.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |