Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
jiNa OCR Image to Text 1.0 Denial of Service via PNG
Vulnerability Description
jiNa OCR Image to Text 1.0 contains a denial of service vulnerability that allows local attackers to crash the application by processing a malformed PNG file. Attackers can create a specially crafted PNG file with an oversized buffer and trigger the crash when the application attempts to convert the file to PDF.
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Vulnerability Type
未经控制的内存分配
Vulnerability Title
jiNa OCR Image to Text 安全漏洞
Vulnerability Description
jiNa OCR Image to Text是Convertimagetotext开源的一款支持从图片中提取文字内容的识别工具。 jiNa OCR Image to Text 1.0版本存在安全漏洞,该漏洞源于处理畸形PNG文件时存在拒绝服务,可能导致本地攻击者创建包含超长缓冲区的特制PNG文件并在应用程序尝试转换为PDF时触发崩溃。
CVSS Information
N/A
Vulnerability Type
N/A