Vulnerabilities > Glyphandcog > Xpdf > Medium

DATE CVE VULNERABILITY TITLE RISK
2019-09-27 CVE-2019-16927 Out-of-bounds Write vulnerability in Glyphandcog Xpdf 4.01.01
Xpdf 4.01.01 has an out-of-bounds write in the vertProfile part of the TextPage::findGaps function in TextOutputDev.cc, a different vulnerability than CVE-2019-9877.
4.3
2018-01-30 CVE-2011-2902 Improper Input Validation vulnerability in multiple products
zxpdf in xpdf before 3.02-19 as packaged in Debian unstable and 3.02-12+squeeze1 as packaged in Debian squeeze deletes temporary files insecurely, which allows remote attackers to delete arbitrary files via a crafted .pdf.gz file name.
network
low complexity
glyphandcog debian CWE-20
6.4