← Vulnerability feed

Vulnerability record · CVE-2021-21821 · published 8 July 2021

CVE-2021-21821: Accusoft imagegear stack-based buffer overflow vulnerability

Accusoft · Imagegear

A stack-based buffer overflow vulnerability exists in the PDF process_fontname functionality of Accusoft ImageGear 19.9. A specially crafted malformed file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.

9.8 CVSS 3.1 Critical EPSS 2.0% · top 20.5% CWE-121 · Stack-based buffer overflowCWE-787 · Out-of-bounds write
9.8CVSS 3.1 base score, v2 7.5
2.0%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
2References, 2 tagged exploit
17 Jun 2026Last modified by NVD

Description

A stack-based buffer overflow vulnerability exists in the PDF process_fontname functionality of Accusoft ImageGear 19.9. A specially crafted malformed file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2021-21821 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.8CVE-2023-35002Accusoft imagegear memory buffer overflow vulnerabilityA heap-based buffer overflow vulnerability exists in the pictwread functionality of Accusoft ImageGear 20.1. A specially crafted malformed file can l…EPSS 1.4%9.8CVE-2023-39453Accusoft imagegear use after free vulnerabilityA use-after-free vulnerability exists in the tif_parse_sub_IFD functionality of Accusoft ImageGear 20.1. A specially crafted malformed file can lead …EPSS 1.3%9.8CVE-2023-40163Accusoft imagegear out-of-bounds write vulnerabilityAn out-of-bounds write vulnerability exists in the allocate_buffer_for_jpeg_decoding functionality of Accusoft ImageGear 20.1. A specially crafted ma…EPSS 1.1%9.8CVE-2023-32284Accusoft imagegear memory buffer overflow vulnerabilityAn out-of-bounds write vulnerability exists in the tiff_planar_adobe functionality of Accusoft ImageGear 20.1. A specially crafted malformed file can…EPSS 0.88%9.8CVE-2023-32614Accusoft imagegear out-of-bounds write vulnerabilityA heap-based buffer overflow vulnerability exists in the create_png_object functionality of Accusoft ImageGear 20.1. A specially crafted malformed fi…EPSS 0.83%9.8CVE-2022-29465Accusoft imagegear memory buffer overflow vulnerabilityAn out-of-bounds write vulnerability exists in the PSD Header processing memory allocation functionality of Accusoft ImageGear 20.0. A specially-craf…EPSS 2.0%9.8CVE-2021-21807Accusoft imagegear integer overflow vulnerabilityAn integer overflow vulnerability exists in the DICOM parse_dicom_meta_info functionality of Accusoft ImageGear 19.9. A specially crafted malformed f…EPSS 1.5%9.8CVE-2021-21795Accusoft imagegear heap-based buffer overflow vulnerabilityA heap-based buffer overflow vulnerability exists in the PSD read_icc_icCurve_data functionality of Accusoft ImageGear 19.9. A specially crafted malf…EPSS 1.4%

Source: NIST National Vulnerability Database (record CVE-2021-21821), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.