Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2022-24106

Опубликовано: 30 авг. 2022
Источник: debian

Описание

In Xpdf prior to 4.04, the DCT (JPEG) decoder was incorrectly allowing the 'interleaved' flag to be changed after the first scan of the image, leading to an unknown integer-related vulnerability in Stream.cc.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
popplerunfixedpackage

Примечания

  • https://gitlab.freedesktop.org/poppler/poppler/-/issues/1297

  • Code only compiled with -DENABLE_DCTDECODER=unmaintained

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 3 лет назад

In Xpdf prior to 4.04, the DCT (JPEG) decoder was incorrectly allowing the 'interleaved' flag to be changed after the first scan of the image, leading to an unknown integer-related vulnerability in Stream.cc.

CVSS3: 7.8
nvd
больше 3 лет назад

In Xpdf prior to 4.04, the DCT (JPEG) decoder was incorrectly allowing the 'interleaved' flag to be changed after the first scan of the image, leading to an unknown integer-related vulnerability in Stream.cc.

CVSS3: 7.8
github
больше 3 лет назад

In Xpdf prior to 4.04, the DCT (JPEG) decoder was incorrectly allowing the 'interleaved' flag to be changed after the first scan of the image, leading to an unknown integer-related vulnerability in Stream.cc.