Iceni develops document processing and conversion software with a narrow but prominent product line centered on its Argus and Infix applications, which handle PDF manipulation and document workflows. The vendor's vulnerability exposure recurs through memory-safety and integer-handling weakness classes—including buffer boundary violations, out-of-bounds writes and reads, and integer overflow conditions—that are characteristic of software processing complex, untrusted document formats. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Iceni over time
Signals from CVEs in this vendor scope (11 CVEs).
11 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2011-3332HIGH Stack-based buffer overflow in Iceni Argus 6.20 and earlier and Infix 5.04 allows remote attackers to execute arbitrary code via a crafted PDF document that uses flate compression. | Oct 6, 2011 | 10.0 | 32 | NO | NO |
CVE-2016-8387HIGH An exploitable heap-based buffer overflow exists in Iceni Argus. When it attempts to convert a malformed PDF with an object encoded w/ multiple encoding types terminating with an L | Feb 27, 2017 | 7.8 | 26 | NO | NO |
CVE-2016-8386HIGH An exploitable heap-based buffer overflow exists in Iceni Argus. When it attempts to convert a PDF containing a malformed font to XML, the tool will attempt to use a size out of th | Feb 27, 2017 | 7.8 | 26 | NO | NO |
CVE-2017-2777HIGH An exploitable heap overflow vulnerability exists in the ipStringCreate function of Iceni Argus Version 6.6.05. A specially crafted pdf file can cause an integer overflow resulting | Sep 17, 2018 | 7.8 | 22 | NO | NO |
CVE-2016-8335HIGH An exploitable stack based buffer overflow vulnerability exists in the ipNameAdd functionality of Iceni Argus Version 6.6.04 (Sep 7 2012) NK - Linux x64 and Version 6.6.04 (Nov 14 | Oct 28, 2016 | 7.8 | 22 | NO | NO |
CVE-2016-8333HIGH An exploitable stack-based buffer overflow vulnerability exists in the ipfSetColourStroke functionality of Iceni Argus version 6.6.04 A specially crafted pdf file can cause a buffe | Oct 28, 2016 | 7.8 | 22 | NO | NO |
CVE-2017-2863HIGH An out-of-bounds write vulnerability exists in the PDF parsing functionality of Infix 7.1.5. A specially crafted PDF file can cause a vulnerability resulting in potential memory co | Jul 12, 2017 | 7.8 | 20 | NO | NO |
CVE-2016-8715HIGH An exploitable heap corruption vulnerability exists in the loadTrailer functionality of Iceni Argus version 6.6.05. A specially crafted PDF file can cause a heap corruption resulti | Feb 28, 2017 | 7.8 | 20 | NO | NO |
CVE-2016-8389HIGH An exploitable integer-overflow vulnerability exists within Iceni Argus. When it attempts to convert a malformed PDF to XML, it will attempt to convert each character from a font i | Feb 28, 2017 | 7.8 | 20 | NO | NO |
CVE-2016-8388HIGH An exploitable arbitrary heap-overwrite vulnerability exists within Iceni Argus. When it attempts to convert a malformed PDF to XML, it will explicitly trust an index within the sp | Feb 28, 2017 | 7.8 | 20 | NO | NO |
Signals from CVEs in this vendor scope (11 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Iceni.
Media articles that mention a CVE ID that affects a product developed by Iceni — matched by CVE ID, not by vendor name.