Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2022-24106

Опубликовано: 30 авг. 2022
Источник: nvd
CVSS3: 7.8
EPSS Низкий

Описание

In Xpdf prior to 4.04, the DCT (JPEG) decoder was incorrectly allowing the 'interleaved' flag to be changed after the first scan of the image, leading to an unknown integer-related vulnerability in Stream.cc.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:glyphandcog:xpdfreader:*:*:*:*:*:*:*:*
Версия до 4.04 (исключая)

EPSS

Процентиль: 33%
0.00133
Низкий

7.8 High

CVSS3

Дефекты

CWE-190

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 3 лет назад

In Xpdf prior to 4.04, the DCT (JPEG) decoder was incorrectly allowing the 'interleaved' flag to be changed after the first scan of the image, leading to an unknown integer-related vulnerability in Stream.cc.

CVSS3: 7.8
debian
больше 3 лет назад

In Xpdf prior to 4.04, the DCT (JPEG) decoder was incorrectly allowing ...

CVSS3: 7.8
github
больше 3 лет назад

In Xpdf prior to 4.04, the DCT (JPEG) decoder was incorrectly allowing the 'interleaved' flag to be changed after the first scan of the image, leading to an unknown integer-related vulnerability in Stream.cc.

EPSS

Процентиль: 33%
0.00133
Низкий

7.8 High

CVSS3

Дефекты

CWE-190