An uninitialized memory access vulnerability exists in...
        
  High severity
        
          Unreviewed
      
        Published
          May 24, 2022 
          to the GitHub Advisory Database
          •
          Updated Jan 28, 2023 
      
  
Description
        Published by the National Vulnerability Database
      Sep 18, 2019 
    
  
        Published to the GitHub Advisory Database
      May 24, 2022 
    
  
        Last updated
      Jan 28, 2023 
    
  
An uninitialized memory access vulnerability exists in the way Aspose.PDF 19.2 for C++ handles invalid parent object pointers. A specially crafted PDF can cause a read and write from uninitialized memory, resulting in memory corruption and possibly arbitrary code execution. To trigger this vulnerability, a specifically crafted PDF document needs to be processed by the target application.
References