jiNa OCR Image to Text Denial-of-Service Vulnerability
Vulnerability
A denial-of-service vulnerability has been identified in jiNa OCR Image to Text version 1.0. This vulnerability allows local attackers to crash the application by processing a malformed PNG file. Attackers can create a specially crafted PNG file with an oversized buffer, which triggers the crash when the application attempts to convert the file to PDF.
Impact
Exploitation of this vulnerability leads to a crash of the application, causing a denial-of-service condition.
Reproduction
The vulnerability can be reproduced by creating a PNG file with an oversized buffer and then using jiNa OCR Image to Text 1.0 to convert the file to PDF. The application will crash during the conversion process.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
