rootpwn

high · CVSS v3 7.1

CVE-2026-91794

Addressed potential issues where the application could be exposed to an Out-of-Bounds Read/Write vulnerability and crash…

Description

Addressed potential issues where the application could be exposed to an Out-of-Bounds Read/Write vulnerability and crash when handling certain U3D files, PRC files, AcroForms, JPEG/JPEG2000 images, or annotations with malformed streams or data, which attackers could exploit to execute remote code or disclose information. This occurs due to a lack of proper validation of user-supplied data before performing operations on objects.

Scores

Severity
high
CVSS v2
5.8
CVSS v3
7.1
CVSS v4
EPSS

← All CVEs