CVE-2013-4986

UnknownEPSS 4.08%

Last modified

CVE-2013-4986 is a vulnerability of currently unknown severity. Stack-based buffer overflow in PDFAX0722_IconCool.dll 7.22.1125.2121 in IconCool PDFCool Studio 3.32 Build 130330 and earlier allows remote attackers to execute arbitrary code via a crafted PDF file.. EPSS estimates a 4.08% chance of exploitation in the next 30 days.

Description

Stack-based buffer overflow in PDFAX0722_IconCool.dll 7.22.1125.2121 in IconCool PDFCool Studio 3.32 Build 130330 and earlier allows remote attackers to execute arbitrary code via a crafted PDF file.

Metrics

EPSS Probability
4.08%

89.4th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersionsUpdate
IconcoolPdfcool Studio<= 3.32Build130330
IconcoolPdfcool Studio2.0Build110427
IconcoolPdfcool Studio2.5Build120405
IconcoolPdfcool Studio2.6Build120405
IconcoolPdfcool Studio2.7Build120405
IconcoolPdfcool Studio2.8Build120518
IconcoolPdfcool Studio2.10Build110519
IconcoolPdfcool Studio2.12Build110528
IconcoolPdfcool Studio2.14Build110608
IconcoolPdfcool Studio2.16Build110612
IconcoolPdfcool Studio2.20Build110707
IconcoolPdfcool Studio2.24Build1110801
IconcoolPdfcool Studio2.26Build110823
IconcoolPdfcool Studio2.30Build110920
IconcoolPdfcool Studio2.40Build111016
IconcoolPdfcool Studio3.0Build121022

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2013-4986?
Stack-based buffer overflow in PDFAX0722_IconCool.dll 7.22.1125.2121 in IconCool PDFCool Studio 3.32 Build 130330 and earlier allows remote attackers to execute arbitrary code via a crafted PDF file.
How severe is CVE-2013-4986?
Severity scoring for CVE-2013-4986 is pending analysis. The EPSS model estimates a 4.08% probability of exploitation in the next 30 days.
How do I fix CVE-2013-4986?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2013-4986?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST