Описание
A large loop in JBIG2Stream::readSymbolDictSeg in xpdf 4.00 allows an attacker to cause denial of service via a specific file due to inappropriate decoding.
Ссылки
- Issue TrackingVendor Advisory
- Issue TrackingVendor Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:xpdfreader:xpdf:4.00:*:*:*:*:*:*:*
EPSS
Процентиль: 36%
0.00148
Низкий
5.5 Medium
CVSS3
4.3 Medium
CVSS2
Дефекты
CWE-172
Связанные уязвимости
CVSS3: 5.5
ubuntu
почти 8 лет назад
A large loop in JBIG2Stream::readSymbolDictSeg in xpdf 4.00 allows an attacker to cause denial of service via a specific file due to inappropriate decoding.
CVSS3: 5.5
debian
почти 8 лет назад
A large loop in JBIG2Stream::readSymbolDictSeg in xpdf 4.00 allows an ...
CVSS3: 5.5
github
больше 3 лет назад
A large loop in JBIG2Stream::readSymbolDictSeg in xpdf 4.00 allows an attacker to cause denial of service via a specific file due to inappropriate decoding.
EPSS
Процентиль: 36%
0.00148
Низкий
5.5 Medium
CVSS3
4.3 Medium
CVSS2
Дефекты
CWE-172