
This function will first check the header of the file to see if it matches a known signature for the PNG, GIF, or JFIF image formats. When constructing a TDocPicture class, the following function will be executed. There are a number of image types, and these are handled by a class named TDocPicture. When processing a Microsoft Word XML Document, the application has the ability to embed various images within the document. This application is written in Delphi and contains the majority of its capabilities within a single relocatable binary. Atlantis also has the capability to encrypt document files and fully customize the interface. Atlantis Word Processor is fully compatible with other word processors, such as Microsoft Office Word 2007 and even has several similarities. This word processor is ideally suited for writers and students and provides a number of useful features that can help simplify and even improve one’s writing. Image path: C:\Program Files (x86)\Atlantis\awp.exeĨ.8 - CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H CWEĬWE-122: Heap-based Buffer Overflow DetailsĪtlantis’ Word Processor is a traditional word processor that is aimed to be both portable, flexible, and full of a number of features. Tested VersionsĪtlantis Word Processor 3.2.5.0 start end module name


An attacker must convince a victim to open a document in order to trigger this vulnerability. A specially crafted image embedded within a document can cause an undersized allocation, resulting in an overflow when the application tries to copy data into it. An exploitable heap-based buffer overflow vulnerability exists in the Windows enhanced metafile parser of Atlantis Word Processor, version 3.2.5.0.
