Vulnerabilities > CVE-2021-25786 - Use After Free vulnerability in Qpdf Project Qpdf 10.0.4
Attack vector
LOCAL Attack complexity
LOW Privileges required
NONE Confidentiality impact
LOW Integrity impact
LOW Availability impact
LOW Summary
An issue was discovered in QPDF version 10.0.4, allows remote attackers to execute arbitrary code via crafted .pdf file to Pl_ASCII85Decoder::write parameter in libqpdf.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |