Vulnerabilities > Xpdfreader
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-06-28 | CVE-2022-33108 | Out-of-bounds Write vulnerability in Xpdfreader Xpdf 4.04 XPDF v4.04 was discovered to contain a stack overflow vulnerability via the Object::Copy class of object.cc files. | 7.8 |
2022-05-18 | CVE-2021-27548 | NULL Pointer Dereference vulnerability in Xpdfreader Xpdf 4.03 There is a Null Pointer Dereference vulnerability in the XFAScanner::scanNode() function in XFAScanner.cc in xpdf 4.03. | 5.5 |
2022-05-16 | CVE-2022-30775 | Allocation of Resources Without Limits or Throttling vulnerability in Xpdfreader Xpdf 4.04 xpdf 4.04 allocates excessive memory when presented with crafted input. | 5.5 |
2022-05-09 | CVE-2022-30524 | Out-of-bounds Write vulnerability in Xpdfreader Xpdf 4.0.4 There is an invalid memory access in the TextLine class in TextOutputDev.cc in Xpdf 4.0.4 because the text extractor mishandles characters at large y coordinates. | 7.8 |
2022-04-25 | CVE-2022-27135 | Out-of-bounds Write vulnerability in Xpdfreader Xpdf 4.03 xpdf 4.03 has heap buffer overflow in the function readXRefTable located in XRef.cc. | 5.5 |
2021-08-24 | CVE-2021-30860 | Integer Overflow or Wraparound vulnerability in multiple products An integer overflow was addressed with improved input validation. | 7.8 |
2020-12-26 | CVE-2020-35376 | Out-of-bounds Write vulnerability in multiple products Xpdf 4.02 allows stack consumption because of an incorrect subroutine reference in a Type 1C font charstring, related to the FoFiType1C::getOp() function. | 7.5 |
2020-11-21 | CVE-2020-25725 | In Xpdf 4.02, SplashOutputDev::endType3Char(GfxState *state) SplashOutputDev.cc:3079 is trying to use the freed `t3GlyphStack->cache`, which causes an `heap-use-after-free` problem. | 5.5 |
2020-09-03 | CVE-2020-24999 | Out-of-bounds Write vulnerability in Xpdfreader Xpdf 4.0.2 There is an invalid memory access in the function fprintf located in Error.cc in Xpdf 4.0.2. | 7.8 |
2020-09-03 | CVE-2020-24996 | Improper Initialization vulnerability in Xpdfreader Xpdf 4.0.2 There is an invalid memory access in the function TextString::~TextString() located in Catalog.cc in Xpdf 4.0.2. | 7.8 |