High severity7.8NVD Advisory· Published Feb 6, 2019· Updated Jun 17, 2026
CVE-2018-3973
CVE-2018-3973
Description
An exploitable out of bounds write exists in the CAL parsing functionality of Canvas Draw version 5.0.0. A specially crafted CAL image processed via the application can lead to an out of bounds write overwriting arbitrary data. An attacker can deliver a PCX image to trigger this vulnerability and gain code execution.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Talos/ACD Systemsv5Range: ACDSystems Canvas Draw 5.0.0
- Range: =5.0.0
- cpe:2.3:a:canvasgfx:canvas_draw:5.0.0:*:*:*:*:mac:*:*
Patches
Vulnerability mechanics
References
2- talosintelligence.com/vulnerability_reports/TALOS-2018-0638nvdExploitThird Party Advisory
- www.securityfocus.com/bid/106809nvdBroken LinkThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.