An out-of-bounds read vulnerability exists when parsing a specially crafted file in Esri ArcReader 10.8.1 (and earlier) which allow an unauthenticated attacker to induce an information disclosure issue in the context of the current user.
References
Configurations
History
21 Nov 2024, 06:00
Type | Values Removed | Values Added |
---|---|---|
References | () https://www.esri.com/arcgis-blog/products/arcgis-desktop/administration/arcreader-general-data-frame-security-update/ - Vendor Advisory |
15 Aug 2022, 19:01
Type | Values Removed | Values Added |
---|---|---|
References | (CONFIRM) https://www.esri.com/arcgis-blog/products/arcgis-desktop/administration/arcreader-general-data-frame-security-update/ - Vendor Advisory | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.5 |
CWE | CWE-125 | |
CPE | cpe:2.3:a:esri:arcreader:*:*:*:*:*:*:*:* |
12 Aug 2022, 19:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2022-08-12 19:15
Updated : 2024-11-21 06:00
NVD link : CVE-2021-29118
Mitre link : CVE-2021-29118
CVE.ORG link : CVE-2021-29118
JSON object : View
Products Affected
esri
- arcreader
CWE
CWE-125
Out-of-bounds Read