An issue exists in swftools up to and including 20201222. A heap-use-after-free exists in the function swf_FontExtract_DefineTextCallback() located in swftext.c. It allows an malicious user to cause code execution.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
swftools swftools |