ZeroHour

CVE-2022-27135

PoC ×2
CVSS 3.1
5.5 medium
EPSS
1%p61
Published
()
Modified
Description

xpdf 4.03 has heap buffer overflow in the function readXRefTable located in XRef.cc. An attacker can exploit this bug to cause a Denial of Service (Segmentation fault) or other unspecified effects by sending a crafted PDF file to the pdftoppm binary.

Vendors
xpdfreader
Products
xpdf
Weakness
CWE-787
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.