Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vw78-hqhc-j4hj

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

In Poppler through 0.76.1, there is a heap-based buffer over-read in JPXStream::init in JPEG2000Stream.cc via data with inconsistent heights or widths.

In Poppler through 0.76.1, there is a heap-based buffer over-read in JPXStream::init in JPEG2000Stream.cc via data with inconsistent heights or widths.

EPSS

Процентиль: 71%
0.00713
Низкий

Связанные уязвимости

CVSS3: 8.8
ubuntu
около 6 лет назад

In Poppler through 0.76.1, there is a heap-based buffer over-read in JPXStream::init in JPEG2000Stream.cc via data with inconsistent heights or widths.

CVSS3: 6.6
redhat
около 6 лет назад

In Poppler through 0.76.1, there is a heap-based buffer over-read in JPXStream::init in JPEG2000Stream.cc via data with inconsistent heights or widths.

CVSS3: 8.8
nvd
около 6 лет назад

In Poppler through 0.76.1, there is a heap-based buffer over-read in JPXStream::init in JPEG2000Stream.cc via data with inconsistent heights or widths.

CVSS3: 8.8
debian
около 6 лет назад

In Poppler through 0.76.1, there is a heap-based buffer over-read in J ...

CVSS3: 8.8
fstec
около 6 лет назад

Уязвимость функции JPXStream::init библиотеки для отображения PDF-файлов Poppler, позволяющая нарушителю выполнить произвольный код или вызвать отказ в обслуживании

EPSS

Процентиль: 71%
0.00713
Низкий