VendorsXpdfReaderxpdfany version
Vulnerabilities

XpdfReader Xpdf any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

17CVEs
CVE-2023-2663
Stack overflow in Xpdf 4.04 due to object loop in PDF page label tree
Published 2023-05-11 · Modified
9.1EPSS 0.005
CVE-2024-7868
Uninitialized variable in Xpdf 4.05 due to invalid JPEG header
Published 2024-08-15 · Modified
8.2EPSS 0.004
CVE-2021-30860
An integer overflow was addressed with improved input validation. This issue is fixed in Security Update 2021-005 Catalina, iOS 14.8 and iPadOS 14.8, macOS Big Sur 11.6, watchOS 7.6.2. Processing a maliciously crafted PDF may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited.
Published 2021-08-24 · Analyzed
7.8KEVEPSS 0.760
CVE-2010-3702
The Gfx::getPos function in the PDF parser in xpdf before 3.02pl5, poppler 0.8.7 and possibly other versions up to 0.15.1, CUPS, kdegraphics, and possibly other products allows context-dependent attackers to cause a denial of service (crash) via unknown vectors that trigger an uninitialized pointer dereference.
Published 2010-11-05 · Modified
7.5EPSS 0.028
CVE-2024-7867
Integer overflow and divide-by-zero in Xpdf 4.05 due to bogus page box coordinates
Published 2024-08-15 · Analyzed
6.2EPSS 0.002
CVE-2022-38334
XPDF v4.04 and earlier was discovered to contain a stack overflow via the function Catalog::countPageTree() at Catalog.cc.
Published 2022-09-15 · Modified
5.5EPSS 0.004
CVE-2023-2664
Stack overflow in Xpdf 4.04 due to object loop in PDF embedded file tree
Published 2023-05-11 · Modified
5.5EPSS 0.003
CVE-2024-3247
Stack overflow in Xpdf 4.05 due to object loop in PDF object stream
Published 2024-04-02 · Analyzed
5.5EPSS 0.003
CVE-2024-3248
Stack overflow in Xpdf 4.05 due to object loop in attachments
Published 2024-04-02 · Analyzed
5.5EPSS 0.003
CVE-2023-2662
Divide-by-zero in Xpdf 4.04 due to bad color space object
Published 2023-05-11 · Modified
5.5EPSS 0.003
CVE-2024-4568
Stack overflow in Xpdf 4.05 due to object loop in PDF resources
Published 2024-05-06 · Analyzed
5.5EPSS 0.002
CVE-2024-7866
Stack overflow in Xpdf 4.05 due to object loop in PDF pattern
Published 2024-08-15 · Analyzed
5.5EPSS 0.002
CVE-2024-4141
Out-of-bounds array write in Xpdf 4.05 due to incorrect bounds check
Published 2024-04-24 · Analyzed
5.5EPSS 0.002
CVE-2024-2971
Out-of-bounds array access due to negative object numbers in indirect references in Xpdf 4.05
Published 2024-03-26 · Analyzed
5.5EPSS 0.002
CVE-2024-3900
Out-of-bounds stack array write in Xpdf 4.05 due to missing zero check
Published 2024-04-17 · Analyzed
5.5EPSS 0.002
CVE-2024-4976
Out-of-bounds array write in Xpdf 4.05 due to missing object type check
Published 2024-05-15 · Analyzed
5.5EPSS 0.002
CVE-2023-3044
Divide-by-zero in Xpdf 4.04 due to very large page size
Published 2023-06-02 · Modified
3.3EPSS 0.003