Show filters
24 Total Results
Displaying 1-10 of 24
Sort by:
Attacker Value
Unknown

CVE-2019-16115

Disclosure Date: September 08, 2019 (last updated November 27, 2024)
In Xpdf 4.01.01, a stack-based buffer under-read could be triggered in IdentityFunction::transform in Function.cc, used by GfxAxialShading::getColor. It can, for example, be triggered by sending a crafted PDF document to the pdftoppm tool. It allows an attacker to use a crafted PDF file to cause Denial of Service or possibly unspecified other impact.
Attacker Value
Unknown

CVE-2019-14293

Disclosure Date: July 27, 2019 (last updated November 27, 2024)
An issue was discovered in Xpdf 4.01.01. There is an out of bounds read in the function GfxPatchMeshShading::parse at GfxState.cc for typeA!=6 case 2.
0
Attacker Value
Unknown

CVE-2019-14289

Disclosure Date: July 27, 2019 (last updated November 27, 2024)
An issue was discovered in Xpdf 4.01.01. There is an integer overflow in the function JBIG2Bitmap::combine at JBIG2Stream.cc for the "multiple bytes per line" case.
0
Attacker Value
Unknown

CVE-2019-14291

Disclosure Date: July 27, 2019 (last updated November 27, 2024)
An issue was discovered in Xpdf 4.01.01. There is an out of bounds read in the function GfxPatchMeshShading::parse at GfxState.cc for typeA==6 case 3.
0
Attacker Value
Unknown

CVE-2019-14288

Disclosure Date: July 27, 2019 (last updated November 27, 2024)
An issue was discovered in Xpdf 4.01.01. There is an Integer overflow in the function JBIG2Bitmap::combine at JBIG2Stream.cc for the "one byte per line" case.
0
Attacker Value
Unknown

CVE-2019-14294

Disclosure Date: July 27, 2019 (last updated November 27, 2024)
An issue was discovered in Xpdf 4.01.01. There is a use-after-free in the function JPXStream::fillReadBuf at JPXStream.cc, due to an out of bounds read.
0
Attacker Value
Unknown

CVE-2019-14290

Disclosure Date: July 27, 2019 (last updated November 27, 2024)
An issue was discovered in Xpdf 4.01.01. There is an out of bounds read in the function GfxPatchMeshShading::parse at GfxState.cc for typeA==6 case 2.
0
Attacker Value
Unknown

CVE-2019-14292

Disclosure Date: July 27, 2019 (last updated November 27, 2024)
An issue was discovered in Xpdf 4.01.01. There is an out of bounds read in the function GfxPatchMeshShading::parse at GfxState.cc for typeA!=6 case 1.
0
Attacker Value
Unknown

CVE-2019-13287

Disclosure Date: July 04, 2019 (last updated November 27, 2024)
In Xpdf 4.01.01, there is an out-of-bounds read vulnerability in the function SplashXPath::strokeAdjust() located at splash/SplashXPath.cc. It can, for example, be triggered by sending a crafted PDF document to the pdftoppm tool. It might allow an attacker to cause Information Disclosure. This is related to CVE-2018-16368.
0
Attacker Value
Unknown

CVE-2019-13291

Disclosure Date: July 04, 2019 (last updated November 27, 2024)
In Xpdf 4.01.01, there is a heap-based buffer over-read in the function DCTStream::readScan() located at Stream.cc. It can, for example, be triggered by sending a crafted PDF document to the pdftops tool. It might allow an attacker to cause Information Disclosure.
0