High severity8.8NVD Advisory· Published Jul 12, 2017· Updated May 13, 2026
CVE-2017-2820
CVE-2017-2820
Description
An exploitable integer overflow vulnerability exists in the JPEG 2000 image parsing functionality of freedesktop.org Poppler 0.53.0. A specially crafted PDF file can lead to an integer overflow causing out of bounds memory overwrite on the heap resulting in potential arbitrary code execution. To trigger this vulnerability, a victim must open the malicious PDF in an application using this library.
Affected products
2- cpe:2.3:a:freedesktop:poppler:0.53.0:*:*:*:*:*:*:*
- Range: 0.53
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- talosintelligence.com/vulnerability_reports/TALOS-2017-0321nvdExploitThird Party AdvisoryVDB Entry
- www.securityfocus.com/bid/99497nvdBroken LinkThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.