ZeroHour

CVE-2018-16369

PoC
CVSS 3.0
5.5 medium
EPSS
2%p75
Published
()
Modified
Description

XRef::fetch in XRef.cc in Xpdf 4.00 allows remote attackers to cause a denial of service (stack consumption) via a crafted pdf file, related to AcroForm::scanField, as demonstrated by pdftohtml. NOTE: this might overlap CVE-2018-7453.

Vendors
xpdfreader
Products
xpdf
Vector
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.