Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2855▼ 333 respecto a la semana anterior
Críticas / altas1381▼ 36 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)296▼ 213 respecto a la semana anterior
–

180 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (5.5)0.34%—Xpdfreader Xpdf15/11/202217/6/2026
A stack overflow in the Catalog::readPageLabelTree2(Object*) function of XPDF v4.04 allows attackers to cause a Denial of Service (DoS) via a crafted PDF file.
ModificadaMedia (5.5)0.26%—Xpdfreader Xpdf14/11/202217/6/2026
XPDF v4.04 was discovered to contain a stack overflow via the function FileStream::copy() at xpdf/Stream.cc:795.
ModificadaAlta (7.5)0.75%—Glyphandcog Xpdfreader10/11/202217/6/2026
xpdfreader 4.03 is vulnerable to Buffer Overflow.
ModificadaMedia (5.5)0.39%—Xpdfreader Xpdf30/9/202217/6/2026
An issue was discovered in Xpdf 4.04. There is a crash in XRef::fetch(int, int, Object*, int) in xpdf/XRef.cc, a different vulnerability than CVE-2018-16369 and CVE-2019-16088.
ModificadaMedia (5.5)0.36%—Xpdfreader Xpdf30/9/202217/6/2026
An issue was discovered in Xpdf 4.04. There is a crash in convertToType0 in fofi/FoFiType1C.cc, a different vulnerability than CVE-2022-38928.
ModificadaMedia (5.5)0.43%—Xpdfreader Xpdf30/9/202217/6/2026
An issue was discovered in Xpdf 4.04. There is a crash in gfseek(_IO_FILE*, long, int) in goo/gfile.cc.
ModificadaAlta (7.8)0.47%—Xpdfreader Xpdf29/9/202217/6/2026
There is a use-after-free issue in JBIG2Stream::close() located in JBIG2Stream.cc in Xpdf 4.04. It can be triggered by sending a crafted PDF file to (for example) the pdfimages binary. It allows an attacker to cause Denial of Service or possibly have unspecified other impact.
ModificadaAlta (7.8)0.43%—Xpdfreader Xpdf21/9/202217/6/2026
XPDF 4.04 is vulnerable to Null Pointer Dereference in FoFiType1C.cc:2393.
ModificadaMedia (5.5)0.41%—Xpdfreader Xpdf15/9/202217/6/2026
XPDF v4.04 and earlier was discovered to contain a stack overflow via the function Catalog::countPageTree() at Catalog.cc.
ModificadaMedia (5.5)0.34%—Xpdfreader Xpdf30/8/202217/6/2026
XPDF v4.0.4 was discovered to contain a segmentation violation via the component /xpdf/AcroForm.cc:538.
ModificadaAlta (7.8)0.31%—Glyphandcog Xpdfreader30/8/202217/6/2026
Xpdf prior to 4.04 lacked an integer overflow check in JPXStream.cc.
ModificadaAlta (7.8)0.31%—Glyphandcog Xpdfreader30/8/202217/6/2026
In Xpdf prior to 4.04, the DCT (JPEG) decoder was incorrectly allowing the 'interleaved' flag to be changed after the first scan of the image, leading to an unknown integer-related vulnerability in Stream.cc.
ModificadaAlta (7.8)0.34%—Xpdfreader XpdfFreedesktop Poppler22/8/202217/6/2026
Xpdf prior to version 4.04 contains an integer overflow in the JBIG2 decoder (JBIG2Stream::readTextRegionSeg() in JBIG2Stream.cc). Processing a specially crafted PDF file or JBIG2 image could lead to a crash or the execution of arbitrary code. This is similar to the vulnerability described by CVE-2021-30860 (Apple…
ModificadaAlta (7.8)0.34%—Xpdf Project Xpdf16/8/202217/6/2026
XPDF commit ffaf11c was discovered to contain a heap-buffer overflow via DCTStream::lookChar() at /xpdf/Stream.cc.
ModificadaAlta (7.8)0.34%—Xpdf Project Xpdf16/8/202217/6/2026
XPDF commit ffaf11c was discovered to contain a heap-buffer overflow via DCTStream::readScan() at /xpdf/Stream.cc.
ModificadaAlta (7.8)0.34%—Xpdf Project Xpdf16/8/202217/6/2026
XPDF commit ffaf11c was discovered to contain a global-buffer overflow via Lexer::getObj(Object*) at /xpdf/Lexer.cc.
ModificadaMedia (5.5)0.30%—Xpdf Project Xpdf16/8/202217/6/2026
XPDF commit ffaf11c was discovered to contain a segmentation violation via DCTStream::getChar() at /xpdf/Stream.cc.
ModificadaMedia (5.5)0.30%—Xpdf Project Xpdf16/8/202217/6/2026
XPDF commit ffaf11c was discovered to contain a segmentation violation via Lexer::getObj(Object*) at /xpdf/Lexer.cc.
ModificadaMedia (5.5)0.30%—Xpdf Project Xpdf16/8/202217/6/2026
XPDF commit ffaf11c was discovered to contain a segmentation violation via DCTStream::readMCURow() at /xpdf/Stream.cc.
ModificadaAlta (7.8)0.34%—Xpdf Project Xpdf16/8/202217/6/2026
XPDF commit ffaf11c was discovered to contain a heap-buffer overflow via DCTStream::getChar() at /xpdf/Stream.cc.
ModificadaMedia (5.5)0.46%—Xpdf Project Xpdf16/8/202217/6/2026
XPDF commit ffaf11c was discovered to contain a floating point exception (FPE) via DCTStream::decodeImage() at /xpdf/Stream.cc.
ModificadaAlta (7.8)0.34%—Xpdf Project Xpdf16/8/202217/6/2026
XPDF commit ffaf11c was discovered to contain a heap-buffer overflow via DCTStream::readHuffSym(DCTHuffTable*) at /xpdf/Stream.cc.
ModificadaAlta (7.8)0.34%—Xpdf Project Xpdf16/8/202217/6/2026
XPDF commit ffaf11c was discovered to contain a heap-buffer overflow via DCTStream::transformDataUnit at /xpdf/Stream.cc.
ModificadaAlta (7.8)0.34%—Xpdf Project Xpdf16/8/202217/6/2026
XPDF commit ffaf11c was discovered to contain a stack overflow via __asan_memcpy at asan_interceptors_memintrinsics.cpp.
ModificadaAlta (7.8)1.1%—Xpdfreader Xpdf28/6/202217/6/2026
XPDF v4.04 was discovered to contain a stack overflow vulnerability via the Object::Copy class of object.cc files.
Orbitaley — Vulnerabilidades