Vulnerabilities > CVE-2024-4976 - Out-of-bounds Write vulnerability in Xpdfreader Xpdf

047910
CVSS 5.5 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
HIGH
local
low complexity
xpdfreader
CWE-787

Summary

Out-of-bounds array write in Xpdf 4.05 and earlier, due to missing object type check in AcroForm field reference.

Common Weakness Enumeration (CWE)