VYPR
Vendor

Kermitt2

Products
2
CVEs
8
Across products
8
Status
Private

Products

2

Recent CVEs

8
  • CVE-2020-23877CriNov 10, 2021
    risk 0.64cvss 9.8epss 0.02

    pdf2xml v2.0 was discovered to contain a stack buffer overflow in the component getObjectStream.

  • CVE-2020-23874CriNov 10, 2021
    risk 0.64cvss 9.8epss 0.02

    pdf2xml v2.0 was discovered to contain a heap-buffer overflow in the function TextPage::addAttributsNode.

  • CVE-2020-23873CriNov 10, 2021
    risk 0.64cvss 9.8epss 0.02

    pdf2xml v2.0 was discovered to contain a heap-buffer overflow in the function TextPage::dump.

  • CVE-2019-9878HigMar 21, 2019
    risk 0.51cvss 7.8epss 0.01

    There is an invalid memory access in the function GfxIndexedColorSpace::mapColorToBase() located in GfxState.cc in Xpdf 4.0.0, as used in pdfalto 0.2. It can be triggered by (for example) sending a crafted pdf file to the pdftops binary. It allows an attacker to cause Denial of…

  • CVE-2018-18274HigOct 12, 2018
    risk 0.51cvss 7.8epss 0.01

    A issue was found in pdfalto 0.2. There is a heap-based buffer overflow in the TextPage::addAttributsNode function in XmlAltoOutputDev.cc.

  • CVE-2018-17338HigSep 23, 2018
    risk 0.51cvss 7.8epss 0.01

    An issue has been found in pdfalto through 0.2. It is a heap-based buffer overflow in the function TextPage::dump in XmlAltoOutputDev.cc.

  • CVE-2020-23876HigNov 10, 2021
    risk 0.49cvss 7.5epss 0.01

    pdf2xml v2.0 was discovered to contain a memory leak in the function TextPage::testLinkedText.

  • CVE-2020-23872HigNov 10, 2021
    risk 0.49cvss 7.5epss 0.01

    A NULL pointer dereference in the function TextPage::restoreState of pdf2xml v2.0 allows attackers to cause a denial of service (DoS).