Search CVE reports


Toggle filters

11 – 20 of 166 results


CVE-2024-7867

Medium priority
Needs evaluation

In Xpdf 4.05 (and earlier), very large coordinates in a page box can cause an integer overflow and divide-by-zero.

2 affected packages

xpdf, ipe

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
xpdf Needs evaluation Needs evaluation Not in release Needs evaluation
ipe Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2024-7866

Medium priority
Needs evaluation

In Xpdf 4.05 (and earlier), a PDF object loop in a pattern resource leads to infinite recursion and a stack overflow.

2 affected packages

xpdf, ipe

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
xpdf Needs evaluation Needs evaluation Not in release Needs evaluation
ipe Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2024-4976

Medium priority
Needs evaluation

Out-of-bounds array write in Xpdf 4.05 and earlier, due to missing object type check in AcroForm field reference.

2 affected packages

ipe, xpdf

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ipe Needs evaluation Needs evaluation Needs evaluation Needs evaluation
xpdf Needs evaluation Needs evaluation Not in release Needs evaluation
Show less packages

CVE-2024-26306

Medium priority
Needs evaluation

iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server with RSA authentication, allows a timing side channel in RSA decryption operations. This side channel could be sufficient for an attacker to recover credential...

1 affected package

iperf3

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
iperf3 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2024-4568

Medium priority
Needs evaluation

In Xpdf 4.05 (and earlier), a PDF object loop in the PDF resources leads to infinite recursion and a stack overflow.

2 affected packages

xpdf, ipe

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
xpdf Needs evaluation Needs evaluation Not in release Needs evaluation
ipe Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2024-4141

Medium priority
Needs evaluation

Out-of-bounds array write in Xpdf 4.05 and earlier, triggered by an invalid character code in a Type 1 font. The root problem was a bounds check that was being optimized away by modern compilers.

2 affected packages

xpdf, ipe

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
xpdf Needs evaluation Needs evaluation Not in release Needs evaluation
ipe Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2024-3900

Medium priority
Needs evaluation

Out-of-bounds array write in Xpdf 4.05 and earlier, triggered by long Unicode sequence in ActualText.

3 affected packages

poppler, xpdf, ipe

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
poppler Not affected Not affected Not affected Not affected
xpdf Not affected Not affected Not in release Not affected
ipe Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2024-3248

Medium priority
Needs evaluation

In Xpdf 4.05 (and earlier), a PDF object loop in the attachments leads to infinite recursion and a stack overflow.

2 affected packages

ipe, xpdf

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ipe Needs evaluation Needs evaluation Needs evaluation Needs evaluation
xpdf Needs evaluation Needs evaluation Not in release Needs evaluation
Show less packages

CVE-2024-3247

Medium priority
Needs evaluation

In Xpdf 4.05 (and earlier), a PDF object loop in an object stream leads to infinite recursion and a stack overflow.

2 affected packages

ipe, xpdf

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ipe Needs evaluation Needs evaluation Needs evaluation Needs evaluation
xpdf Needs evaluation Needs evaluation Not in release Needs evaluation
Show less packages

CVE-2024-2971

Medium priority
Needs evaluation

Out-of-bounds array write in Xpdf 4.05 and earlier, triggered by negative object number in indirect reference in the input PDF file.

2 affected packages

ipe, xpdf

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ipe Needs evaluation Needs evaluation Needs evaluation Needs evaluation
xpdf Needs evaluation Needs evaluation Not in release Needs evaluation
Show less packages