EIP-2026-115941
PRE-CVENitro Pro 10.5.7.32 / Nitro Reader 5.5.3.1 - Heap Memory Corruption
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-115941. PoCs published by Francis Provencher.
AI-analyzed exploit summary The document describes a heap memory corruption vulnerability in Nitro PDF (versions 10.5.7.32 and lower, and Nitro Reader 5.5.3.1 and lower) caused by a specially crafted PDF with an invalid /Domain in FunctionType 0. The vulnerability allows remote code execution when a user opens a malicious file.
Description
Nitro Pro 10.5.7.32 / Nitro Reader 5.5.3.1 - Heap Memory Corruption
Exploits (1)
The document describes a heap memory corruption vulnerability in Nitro PDF (versions 10.5.7.32 and lower, and Nitro Reader 5.5.3.1 and lower) caused by a specially crafted PDF with an invalid /Domain in FunctionType 0. The vulnerability allows remote code execution when a user opens a malicious file.