← Advisories

CorelDRAW X7 CDR File (CdrTxt.dll) Off-By-One Stack Corruption Vulnerability

Medium
Advisory ID
ZSL-2014-5204
Release Date
12 November 2014
Vendor
Corel Corporation - http://www.corel.com
Affected Version
17.1.0.572 (X7) - 32bit/64bit (EN), 15.0.0.486 (X5) - 32bit (EN)
CVE
N/A
Tested On
Microsoft Windows 7 Professional SP1 (EN)
Summary

CorelDRAW is one of the image-creating programs in a suite of graphic arts software used by professional artists, educators, students, businesses and the general public. The CorelDRAW Graphics Suite X7, which includes CorelDRAW, is sold as stand-alone software and as a cloud-based subscription. CorelDRAW is the core of the graphics suite and is primarily used for vector illustrations and page layouts.

Description

CorelDRAW is prone to an off-by-one memory corruption vulnerability. An attacker can exploit this issue by tricking a victim into opening a malicious CDR file to execute arbitrary code and/or to cause denial-of-service conditions.

Proof of Concept
Disclosure Timeline
N/A
Credits
Vulnerability discovered by Gjoko Krstic
References
Changelog
12.11.2014Initial release
13.11.2014Added reference [6] and [7]