← back
CVE-2020-8109mediumCWE-787

Bitdefender ace.xmd parser out-of-bounds write (VA-8772)

13Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackcvss 5.9epss 0.9%
exploitation probability
0.9%top 42% of all CVEs
observed exploitation
nono source reports it
A vulnerability has been discovered in the ace.xmd parser that results from a lack of proper validation of user-supplied data, which can result in a write past the end of an allocated buffer. This can result in denial-of-service. This issue affects: Bitdefender Engines version 7.84892 and prior versions.
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H