Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cw28-q96h-5px5

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью

Описание

t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and other products, uses an invalid pointer in conjunction with a dereference operation, which allows remote attackers to execute arbitrary code via a crafted Type 1 font in a PDF document, as demonstrated by testz.2184122398.pdf.

t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and other products, uses an invalid pointer in conjunction with a dereference operation, which allows remote attackers to execute arbitrary code via a crafted Type 1 font in a PDF document, as demonstrated by testz.2184122398.pdf.

EPSS

Процентиль: 97%
0.31187
Средний

Дефекты

CWE-20

Связанные уязвимости

ubuntu
около 14 лет назад

t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and other products, uses an invalid pointer in conjunction with a dereference operation, which allows remote attackers to execute arbitrary code via a crafted Type 1 font in a PDF document, as demonstrated by testz.2184122398.pdf.

redhat
около 14 лет назад

t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and other products, uses an invalid pointer in conjunction with a dereference operation, which allows remote attackers to execute arbitrary code via a crafted Type 1 font in a PDF document, as demonstrated by testz.2184122398.pdf.

nvd
около 14 лет назад

t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and other products, uses an invalid pointer in conjunction with a dereference operation, which allows remote attackers to execute arbitrary code via a crafted Type 1 font in a PDF document, as demonstrated by testz.2184122398.pdf.

debian
около 14 лет назад

t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and ot ...

oracle-oval
больше 13 лет назад

ELSA-2012-0137: texlive security update (MODERATE)

EPSS

Процентиль: 97%
0.31187
Средний

Дефекты

CWE-20