Описание
There is a Null Pointer Dereference vulnerability in the XFAScanner::scanNode() function in XFAScanner.cc in xpdf 4.03.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| texlive-bin | fixed | 2022.20220321.62855-2 | experimental | package |
| texlive-bin | fixed | 2022.20220321.62855-3 | package | |
| texlive-bin | not-affected | bullseye | package | |
| texlive-bin | not-affected | buster | package | |
| texlive-bin | not-affected | stretch | package |
Примечания
https://forum.xpdfreader.com/viewtopic.php?f=3&t=42115
embeds http://www.xpdfreader.com/download.html
PoC crashes pdftosrc binary.
Crash in CLI tool, no security impact
EPSS
Процентиль: 49%
0.00256
Низкий
Связанные уязвимости
CVSS3: 5.5
ubuntu
больше 3 лет назад
There is a Null Pointer Dereference vulnerability in the XFAScanner::scanNode() function in XFAScanner.cc in xpdf 4.03.
CVSS3: 5.5
nvd
больше 3 лет назад
There is a Null Pointer Dereference vulnerability in the XFAScanner::scanNode() function in XFAScanner.cc in xpdf 4.03.
CVSS3: 5.5
github
больше 3 лет назад
There is a Null Pointer Dereference vulnerability in the XFAScanner::scanNode() function in XFAScanner.cc in xpdf 4.03.
EPSS
Процентиль: 49%
0.00256
Низкий