Vulnerability index

Browse CVEs

26 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.5 CVE-2021-40226 xpdfreader 4.03 is vulnerable to Buffer Overflow. Xpdfreader No fix yet Fix from $1,9502022-11-10 HIGH 7.8 CVE-2022-24106 In Xpdf prior to 4.04, the DCT (JPEG) decoder was incorrectly allowing the 'interleaved' flag to be changed after the first scan of the image, leadin… Xpdfreader 4.04+ Fix from $1,9502022-08-30 HIGH 7.8 CVE-2022-24107 Xpdf prior to 4.04 lacked an integer overflow check in JPXStream.cc. Xpdfreader 4.04+ Fix from $1,9502022-08-30 MEDIUM 5.5 CVE-2019-17064 Catalog.cc in Xpdf 4.02 has a NULL pointer dereference because Catalog.pageLabels is initialized too late in the Catalog constructor. Xpdfreader Patch available Fix from $1,6002019-10-01 MEDIUM 5.5 CVE-2019-16927 Xpdf 4.01.01 has an out-of-bounds write in the vertProfile part of the TextPage::findGaps function in TextOutputDev.cc, a different vulnerability tha… Xpdf No fix yet Fix from $1,6002019-09-27 HIGH 7.8 CVE-2019-16115 In Xpdf 4.01.01, a stack-based buffer under-read could be triggered in IdentityFunction::transform in Function.cc, used by GfxAxialShading::getColor.… Xpdfreader No fix yet Fix from $1,9502019-09-08 MEDIUM 5.5 CVE-2019-16088 Xpdf 3.04 has a SIGSEGV in XRef::fetch in XRef.cc after many recursive calls to Catalog::countPageTree in Catalog.cc. Xpdfreader No fix yet Fix from $1,6002019-09-06 MEDIUM 5.5 CVE-2019-15860 Xpdf 2.00 allows a SIGSEGV in XRef::constructXRef in XRef.cc. NOTE: 2.00 is a version from November 2002. Xpdfreader No fix yet Fix from $1,6002019-09-03 HIGH 7.8 CVE-2019-14288 An issue was discovered in Xpdf 4.01.01. There is an Integer overflow in the function JBIG2Bitmap::combine at JBIG2Stream.cc for the "one byte per li… Xpdfreader No fix yet Fix from $1,9502019-07-27 MEDIUM 5.5 CVE-2019-14289 An issue was discovered in Xpdf 4.01.01. There is an integer overflow in the function JBIG2Bitmap::combine at JBIG2Stream.cc for the "multiple bytes … Xpdfreader No fix yet Fix from $1,6002019-07-27 MEDIUM 5.5 CVE-2019-14290 An issue was discovered in Xpdf 4.01.01. There is an out of bounds read in the function GfxPatchMeshShading::parse at GfxState.cc for typeA==6 case 2. Xpdfreader No fix yet Fix from $1,6002019-07-27 MEDIUM 5.5 CVE-2019-14291 An issue was discovered in Xpdf 4.01.01. There is an out of bounds read in the function GfxPatchMeshShading::parse at GfxState.cc for typeA==6 case 3. Xpdfreader No fix yet Fix from $1,6002019-07-27 MEDIUM 5.5 CVE-2019-14292 An issue was discovered in Xpdf 4.01.01. There is an out of bounds read in the function GfxPatchMeshShading::parse at GfxState.cc for typeA!=6 case 1. Xpdfreader No fix yet Fix from $1,6002019-07-27 MEDIUM 5.5 CVE-2019-14293 An issue was discovered in Xpdf 4.01.01. There is an out of bounds read in the function GfxPatchMeshShading::parse at GfxState.cc for typeA!=6 case 2. Xpdfreader No fix yet Fix from $1,6002019-07-27 MEDIUM 5.5 CVE-2019-14294 An issue was discovered in Xpdf 4.01.01. There is a use-after-free in the function JPXStream::fillReadBuf at JPXStream.cc, due to an out of bounds re… Xpdfreader No fix yet Fix from $1,6002019-07-27 HIGH 7.8 CVE-2019-13289 In Xpdf 4.01.01, there is a use-after-free vulnerability in the function JBIG2Stream::close() located at JBIG2Stream.cc. It can, for example, be trig… Xpdfreader No fix yet Fix from $1,9502019-07-04 MEDIUM 5.5 CVE-2019-13287 In Xpdf 4.01.01, there is an out-of-bounds read vulnerability in the function SplashXPath::strokeAdjust() located at splash/SplashXPath.cc. It can, f… Xpdfreader No fix yet Fix from $1,6002019-07-04 MEDIUM 5.5 CVE-2019-13288 In Xpdf 4.01.01, the Parser::getObj() function in Parser.cc may cause infinite recursion via a crafted file. A remote attacker can leverage this for … Xpdfreader No fix yet Fix from $1,6002019-07-04 MEDIUM 5.5 CVE-2019-13291 In Xpdf 4.01.01, there is a heap-based buffer over-read in the function DCTStream::readScan() located at Stream.cc. It can, for example, be triggered… Xpdfreader No fix yet Fix from $1,6002019-07-04 MEDIUM 5.5 CVE-2019-12958 In Xpdf 4.01.01, a heap-based buffer over-read could be triggered in FoFiType1C::convertToType0 in fofi/FoFiType1C.cc when it is trying to access the… Xpdfreader No fix yet Fix from $1,6002019-06-25 HIGH 7.1 CVE-2019-12515 There is an out-of-bounds read vulnerability in the function FlateStream::getChar() located at Stream.cc in Xpdf 4.01.01. It can, for example, be tri… Xpdfreader No fix yet Fix from $1,9502019-06-02 HIGH 7.1 CVE-2019-12493 A stack-based buffer over-read exists in PostScriptFunction::transform in Function.cc in Xpdf 4.01.01 because GfxSeparationColorSpace and GfxDeviceNC… Xpdfreader No fix yet Fix from $1,9502019-05-31 HIGH 7.1 CVE-2019-12360 A stack-based buffer over-read exists in FoFiTrueType::dumpString in fofi/FoFiTrueType.cc in Xpdf 4.01.01. It can, for example, be triggered by sendi… Xpdfreader Mitigation only Fix from $1,9502019-05-27 HIGH 7.8 CVE-2019-9587 There is a stack consumption issue in md5Round1() located in Decrypt.cc in Xpdf 4.01. It can be triggered by sending a crafted pdf file to (for examp… Xpdfreader No fix yet Fix from $1,9502019-03-06 HIGH 7.8 CVE-2019-9588 There is an Invalid memory access in gAtomicIncrement() located at GMutex.h in Xpdf 4.01. It can be triggered by sending a crafted pdf file to (for e… Xpdfreader No fix yet Fix from $1,9502019-03-06 HIGH 7.8 CVE-2019-9589 There is a NULL pointer dereference vulnerability in PSOutputDev::setupResources() located in PSOutputDev.cc in Xpdf 4.01. It can be triggered by sen… Xpdfreader No fix yet Fix from $1,9502019-03-06