Files
CVEs-PoC/2016/CVE-2016-8709.md
T
2025-09-29 21:09:30 +02:00

21 lines
991 B
Markdown

### [CVE-2016-8709](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-8709)
![](https://img.shields.io/static/v1?label=Product&message=Nitro%20Pro&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=10.5.9.9%20(Nitro%20PDF%20Library%20-%2010%2C%205%2C%209%2C%209)%20-%20x64%20version%20&color=brightgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=remote%20code%20error&color=brightgreen)
### Description
A remote out of bound write / memory corruption vulnerability exists in the PDF parsing functionality of Nitro Pro 10. A specially crafted PDF file can cause a vulnerability resulting in potential memory corruption. An attacker can send the victim a specific PDF file to trigger this vulnerability.
### POC
#### Reference
No PoCs from references.
#### Github
- https://github.com/0xCyberY/CVE-T4PDF
- https://github.com/ARPSyndicate/cvemon
- https://github.com/Live-Hack-CVE/CVE-2016-8709
- https://github.com/n0-traces/cve_monitor