High severity7.8NVD Advisory· Published Jan 31, 2018· Updated Jun 17, 2026
CVE-2018-6462
CVE-2018-6462
Description
Tracker PDF-XChange Viewer and Viewer AX SDK before 2.5.322.8 mishandle conversion from YCC to RGB colour spaces by calculating on the basis of 1 bpc instead of 8 bpc, which might allow remote attackers to execute arbitrary code via a crafted PDF document.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:a:tracker-software:pdf-xchange_viewer:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:tracker-software:pdf-xchange_viewer:*:*:*:*:*:*:*:*range: <2.5.322.8
- (no CPE)range: <2.5.322.8
cpe:2.3:a:tracker-software:viewer_ax_sdk:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:tracker-software:viewer_ax_sdk:*:*:*:*:*:*:*:*range: <2.5.322.8
- (no CPE)range: <2.5.322.8
Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.