VYPR

Xpdf

by Xpdf

CVEs (176)

  • CVE-2021-30860HigKEVAug 24, 2021
    risk 0.62cvss 7.8epss 0.76

    An integer overflow was addressed with improved input validation. This issue is fixed in Security Update 2021-005 Catalina, iOS 14.8 and iPadOS 14.8, macOS Big Sur 11.6, watchOS 7.6.2. Processing a maliciously crafted PDF may lead to arbitrary code execution. Apple is aware of a…

  • CVE-2024-7868HigAug 15, 2024
    risk 0.53cvss 8.2epss 0.00

    In Xpdf 4.05 (and earlier), invalid header info in a DCT (JPEG) stream can lead to an uninitialized variable in the DCT decoder. The proof-of-concept PDF file causes a segfault attempting to read from an invalid address.

  • CVE-2022-38222HigSep 29, 2022
    risk 0.51cvss 7.8epss 0.00

    There is a use-after-free issue in JBIG2Stream::close() located in JBIG2Stream.cc in Xpdf 4.04. It can be triggered by sending a crafted PDF file to (for example) the pdfimages binary. It allows an attacker to cause Denial of Service or possibly have unspecified other impact.

  • CVE-2022-38928HigSep 21, 2022
    risk 0.51cvss 7.8epss 0.00

    XPDF 4.04 is vulnerable to Null Pointer Dereference in FoFiType1C.cc:2393.

  • CVE-2022-24107HigAug 30, 2022
    risk 0.51cvss 7.8epss 0.00

    Xpdf prior to 4.04 lacked an integer overflow check in JPXStream.cc.

  • CVE-2022-24106HigAug 30, 2022
    risk 0.51cvss 7.8epss 0.00

    In Xpdf prior to 4.04, the DCT (JPEG) decoder was incorrectly allowing the 'interleaved' flag to be changed after the first scan of the image, leading to an unknown integer-related vulnerability in Stream.cc.

  • CVE-2022-38171HigAug 22, 2022
    risk 0.51cvss 7.8epss 0.00

    Xpdf prior to version 4.04 contains an integer overflow in the JBIG2 decoder (JBIG2Stream::readTextRegionSeg() in JBIG2Stream.cc). Processing a specially crafted PDF file or JBIG2 image could lead to a crash or the execution of arbitrary code. This is similar to the…

  • CVE-2022-38238HigAug 16, 2022
    risk 0.51cvss 7.8epss 0.00

    XPDF commit ffaf11c was discovered to contain a heap-buffer overflow via DCTStream::lookChar() at /xpdf/Stream.cc.

  • CVE-2022-38237HigAug 16, 2022
    risk 0.51cvss 7.8epss 0.00

    XPDF commit ffaf11c was discovered to contain a heap-buffer overflow via DCTStream::readScan() at /xpdf/Stream.cc.

  • CVE-2022-38236HigAug 16, 2022
    risk 0.51cvss 7.8epss 0.00

    XPDF commit ffaf11c was discovered to contain a global-buffer overflow via Lexer::getObj(Object*) at /xpdf/Lexer.cc.

  • CVE-2022-38231HigAug 16, 2022
    risk 0.51cvss 7.8epss 0.00

    XPDF commit ffaf11c was discovered to contain a heap-buffer overflow via DCTStream::getChar() at /xpdf/Stream.cc.

  • CVE-2022-38229HigAug 16, 2022
    risk 0.51cvss 7.8epss 0.00

    XPDF commit ffaf11c was discovered to contain a heap-buffer overflow via DCTStream::readHuffSym(DCTHuffTable*) at /xpdf/Stream.cc.

  • CVE-2022-38228HigAug 16, 2022
    risk 0.51cvss 7.8epss 0.00

    XPDF commit ffaf11c was discovered to contain a heap-buffer overflow via DCTStream::transformDataUnit at /xpdf/Stream.cc.

  • CVE-2022-38227HigAug 16, 2022
    risk 0.51cvss 7.8epss 0.00

    XPDF commit ffaf11c was discovered to contain a stack overflow via __asan_memcpy at asan_interceptors_memintrinsics.cpp.

  • CVE-2022-33108HigJun 28, 2022
    risk 0.51cvss 7.8epss 0.01

    XPDF v4.04 was discovered to contain a stack overflow vulnerability via the Object::Copy class of object.cc files.

  • CVE-2022-30524HigMay 9, 2022
    risk 0.51cvss 7.8epss 0.02

    There is an invalid memory access in the TextLine class in TextOutputDev.cc in Xpdf 4.0.4 because the text extractor mishandles characters at large y coordinates. It can be triggered by (for example) sending a crafted pdf file to the pdftotext binary, which allows a remote…

  • CVE-2020-24999HigSep 3, 2020
    risk 0.51cvss 7.8epss 0.01

    There is an invalid memory access in the function fprintf located in Error.cc in Xpdf 4.0.2. It can be triggered by sending a crafted PDF file to the pdftohtml binary, which allows a remote attacker to cause a Denial of Service (Segmentation fault) or possibly have unspecified…

  • CVE-2020-24996HigSep 3, 2020
    risk 0.51cvss 7.8epss 0.01

    There is an invalid memory access in the function TextString::~TextString() located in Catalog.cc in Xpdf 4.0.2. It can be triggered by (for example) sending a crafted pdf file to the pdftohtml binary, which allows a remote attacker to cause a Denial of Service (Segmentation…

  • CVE-2012-2142HigJan 9, 2020
    risk 0.51cvss 7.8epss 0.03

    The error function in Error.cc in poppler before 0.21.4 allows remote attackers to execute arbitrary commands via a PDF containing an escape sequence for a terminal emulator.

  • CVE-2019-16115HigSep 8, 2019
    risk 0.51cvss 7.8epss 0.01

    In Xpdf 4.01.01, a stack-based buffer under-read could be triggered in IdentityFunction::transform in Function.cc, used by GfxAxialShading::getColor. It can, for example, be triggered by sending a crafted PDF document to the pdftoppm tool. It allows an attacker to use a crafted…

Page 1 of 9