ZeroHour

Vulnerabilities

5 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos

CVEVulnerabilityCVSSEPSSFlagsAffectedExposurePublished
CVE-2021-3508
A flaw was found in PDFResurrect in version 0.22b.

A flaw was found in PDFResurrect in version 0.22b. There is an infinite loop in get_xref_linear_skipped() in pdf.c via a crafted PDF file.

NVD description · AI analysis pending
5.5<1% PoC
  • pdfresurrect project pdfresurrect
CVE-2020-20740
PDFResurrect before 0.20 lack of header validation checks causes heap-buffer-overflow in pdf_get_version().

PDFResurrect before 0.20 lack of header validation checks causes heap-buffer-overflow in pdf_get_version().

NVD description · AI analysis pending
7.81% PoC
  • pdfresurrect project pdfresurrect
  • pdfresurrect project debian linux
  • pdfresurrect project fedora
CVE-2020-9549
In PDFResurrect 0.12 through 0.19, get_type in pdf.c has an out-of-bounds write via a crafted PDF document.

In PDFResurrect 0.12 through 0.19, get_type in pdf.c has an out-of-bounds write via a crafted PDF document.

NVD description · AI analysis pending
7.81% PoC
  • pdfresurrect project pdfresurrect
  • pdfresurrect project debian linux
CVE-2019-14934
An issue was discovered in PDFResurrect before 0.18.

An issue was discovered in PDFResurrect before 0.18. pdf_load_pages_kids in pdf.c doesn't validate a certain size value, which leads to a malloc failure and out-of-bounds write.

NVD description · AI analysis pending
7.81%
  • pdfresurrect project pdfresurrect
  • pdfresurrect project fedora
  • pdfresurrect project debian linux
CVE-2019-14267
PDFResurrect 0.15 has a buffer overflow via a crafted PDF file because data associated with startxref and %%EOF is mishandled.

PDFResurrect 0.15 has a buffer overflow via a crafted PDF file because data associated with startxref and %%EOF is mishandled.

NVD description · AI analysis pending
7.87% PoC
  • pdfresurrect project pdfresurrect
  • pdfresurrect project fedora