Vulnerability Spotlight: Code execution vulnerabilities in Nitro Pro PDF
Vulnerabilities mentionedAll →
| CVE | Vulnerability | CVSS | EPSS | Flags | Affected | Exposure | Published |
|---|---|---|---|---|---|---|---|
| CVE-2021-21796 +1 in the same advisory: …21797 | An exploitable use-after-free vulnerability exists in the JavaScript implementation of Nitro Pro PDF. An exploitable use-after-free vulnerability exists in the JavaScript implementation of Nitro Pro PDF. A specially crafted document can cause an object containing the path to a document to be destroyed and then later reused, resulting in a use-after-free vulnerability, which can lead to code execution under the context of the application. An attacker can convince a user to open a document to trigger this vulnerability. NVD description · AI analysis pending | 7.8 | 16% | PoC |
| — |
Full article277 words · extracted from blog.talosintelligence.com · click to collapse
Thursday, October 14, 2021 13:17
A Cisco Talos team member discovered these vulnerabilities.
Cisco Talos recently discovered multiple vulnerabilities in the Nitro Pro PDF reader that could allow an attacker to execute code in the context of the application.
Nitro Pro PDF is part of Nitro Software’s Productivity Suite. Pro PDF allows users to create and modify PDFs and other digital documents. It includes support for several capabilities via third-party libraries to parse the PDFs. TALOS-2021-1265 (CVE-2021-21796) is a use-after-free vulnerability that can be triggered if a target opens a specially crafted, malicious PDF.
TALOS-2021-1266 (CVE-2021-21797) is a double-free vulnerability that can cause a reference to a timeout object to be stored in two different places, eventually leading to the ability to execute code under the context of the application.
Cisco Talos worked with Nitro to disclose these vulnerabilities following Cisco’s vulnerability disclosure policy. While Nitro did not have an update initially available at the time we disclosed these vulnerabilities, they have since released fixes for these issues.
Users are encouraged to update these affected products as soon as possible: Nitro Pro versions 13.31.0.605 and 13.33.2.645. Talos tested and confirmed these versions of the PDF reader could be exploited by this vulnerability. In addition to applying the patches, these vulnerabilities can also be mitigated if users disable the use of JavaScript in the software’s settings.
The following SNORTⓇ rules will detect exploitation attempts against this vulnerability: 57303, 57304, 57294 and 57295. Additional rules may be released in the future and current rules are subject to change, pending additional vulnerability information. For the most current rule information, please refer to your Firepower Management Center or Snort.org.
Text extracted automatically; images, tables and formatting may be missing. Original: https://blog.talosintelligence.com/vuln-spotlight-nitro-pro/