NA

CVE-2022-24106

Published: 30/08/2022 Updated: 28/10/2022
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 0

Vulnerability Summary

In Xpdf before 4.04, the DCT (JPEG) decoder was incorrectly allowing the 'interleaved' flag to be changed after the first scan of the image, leading to an unknown integer-related vulnerability in Stream.cc.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

glyphandcog xpdfreader

Vendor Advisories

Debian Bug report logs - #1021669 poppler: CVE-2022-24106 Package: src:poppler; Maintainer for src:poppler is Debian freedesktoporg maintainers <pkg-freedesktop-maintainers@listsaliothdebianorg>; Reported by: Moritz Mühlenhoff <jmm@inutilorg> Date: Wed, 12 Oct 2022 17:42:02 UTC Severity: important Tags: securit ...