Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2855▼ 333 respecto a la semana anterior
Críticas / altas1381▼ 36 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)296▼ 213 respecto a la semana anterior
180 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5.5) | 0.34% | — | Xpdfreader Xpdf | 15/11/2022 | 17/6/2026 | A stack overflow in the Catalog::readPageLabelTree2(Object*) function of XPDF v4.04 allows attackers to cause a Denial of Service (DoS) via a crafted PDF file. | |
| Modificada | Media (5.5) | 0.26% | — | Xpdfreader Xpdf | 14/11/2022 | 17/6/2026 | XPDF v4.04 was discovered to contain a stack overflow via the function FileStream::copy() at xpdf/Stream.cc:795. | |
| Modificada | Alta (7.5) | 0.75% | — | Glyphandcog Xpdfreader | 10/11/2022 | 17/6/2026 | xpdfreader 4.03 is vulnerable to Buffer Overflow. | |
| Modificada | Media (5.5) | 0.39% | — | Xpdfreader Xpdf | 30/9/2022 | 17/6/2026 | An issue was discovered in Xpdf 4.04. There is a crash in XRef::fetch(int, int, Object*, int) in xpdf/XRef.cc, a different vulnerability than CVE-2018-16369 and CVE-2019-16088. | |
| Modificada | Media (5.5) | 0.36% | — | Xpdfreader Xpdf | 30/9/2022 | 17/6/2026 | An issue was discovered in Xpdf 4.04. There is a crash in convertToType0 in fofi/FoFiType1C.cc, a different vulnerability than CVE-2022-38928. | |
| Modificada | Media (5.5) | 0.43% | — | Xpdfreader Xpdf | 30/9/2022 | 17/6/2026 | An issue was discovered in Xpdf 4.04. There is a crash in gfseek(_IO_FILE*, long, int) in goo/gfile.cc. | |
| Modificada | Alta (7.8) | 0.47% | — | Xpdfreader Xpdf | 29/9/2022 | 17/6/2026 | There is a use-after-free issue in JBIG2Stream::close() located in JBIG2Stream.cc in Xpdf 4.04. It can be triggered by sending a crafted PDF file to (for example) the pdfimages binary. It allows an attacker to cause Denial of Service or possibly have unspecified other impact. | |
| Modificada | Alta (7.8) | 0.43% | — | Xpdfreader Xpdf | 21/9/2022 | 17/6/2026 | XPDF 4.04 is vulnerable to Null Pointer Dereference in FoFiType1C.cc:2393. | |
| Modificada | Media (5.5) | 0.41% | — | Xpdfreader Xpdf | 15/9/2022 | 17/6/2026 | XPDF v4.04 and earlier was discovered to contain a stack overflow via the function Catalog::countPageTree() at Catalog.cc. | |
| Modificada | Media (5.5) | 0.34% | — | Xpdfreader Xpdf | 30/8/2022 | 17/6/2026 | XPDF v4.0.4 was discovered to contain a segmentation violation via the component /xpdf/AcroForm.cc:538. | |
| Modificada | Alta (7.8) | 0.31% | — | Glyphandcog Xpdfreader | 30/8/2022 | 17/6/2026 | Xpdf prior to 4.04 lacked an integer overflow check in JPXStream.cc. | |
| Modificada | Alta (7.8) | 0.31% | — | Glyphandcog Xpdfreader | 30/8/2022 | 17/6/2026 | In Xpdf prior to 4.04, the DCT (JPEG) decoder was incorrectly allowing the 'interleaved' flag to be changed after the first scan of the image, leading to an unknown integer-related vulnerability in Stream.cc. | |
| Modificada | Alta (7.8) | 0.34% | — | Xpdfreader XpdfFreedesktop Poppler | 22/8/2022 | 17/6/2026 | Xpdf prior to version 4.04 contains an integer overflow in the JBIG2 decoder (JBIG2Stream::readTextRegionSeg() in JBIG2Stream.cc). Processing a specially crafted PDF file or JBIG2 image could lead to a crash or the execution of arbitrary code. This is similar to the vulnerability described by CVE-2021-30860 (Apple… | |
| Modificada | Alta (7.8) | 0.34% | — | Xpdf Project Xpdf | 16/8/2022 | 17/6/2026 | XPDF commit ffaf11c was discovered to contain a heap-buffer overflow via DCTStream::lookChar() at /xpdf/Stream.cc. | |
| Modificada | Alta (7.8) | 0.34% | — | Xpdf Project Xpdf | 16/8/2022 | 17/6/2026 | XPDF commit ffaf11c was discovered to contain a heap-buffer overflow via DCTStream::readScan() at /xpdf/Stream.cc. | |
| Modificada | Alta (7.8) | 0.34% | — | Xpdf Project Xpdf | 16/8/2022 | 17/6/2026 | XPDF commit ffaf11c was discovered to contain a global-buffer overflow via Lexer::getObj(Object*) at /xpdf/Lexer.cc. | |
| Modificada | Media (5.5) | 0.30% | — | Xpdf Project Xpdf | 16/8/2022 | 17/6/2026 | XPDF commit ffaf11c was discovered to contain a segmentation violation via DCTStream::getChar() at /xpdf/Stream.cc. | |
| Modificada | Media (5.5) | 0.30% | — | Xpdf Project Xpdf | 16/8/2022 | 17/6/2026 | XPDF commit ffaf11c was discovered to contain a segmentation violation via Lexer::getObj(Object*) at /xpdf/Lexer.cc. | |
| Modificada | Media (5.5) | 0.30% | — | Xpdf Project Xpdf | 16/8/2022 | 17/6/2026 | XPDF commit ffaf11c was discovered to contain a segmentation violation via DCTStream::readMCURow() at /xpdf/Stream.cc. | |
| Modificada | Alta (7.8) | 0.34% | — | Xpdf Project Xpdf | 16/8/2022 | 17/6/2026 | XPDF commit ffaf11c was discovered to contain a heap-buffer overflow via DCTStream::getChar() at /xpdf/Stream.cc. | |
| Modificada | Media (5.5) | 0.46% | — | Xpdf Project Xpdf | 16/8/2022 | 17/6/2026 | XPDF commit ffaf11c was discovered to contain a floating point exception (FPE) via DCTStream::decodeImage() at /xpdf/Stream.cc. | |
| Modificada | Alta (7.8) | 0.34% | — | Xpdf Project Xpdf | 16/8/2022 | 17/6/2026 | XPDF commit ffaf11c was discovered to contain a heap-buffer overflow via DCTStream::readHuffSym(DCTHuffTable*) at /xpdf/Stream.cc. | |
| Modificada | Alta (7.8) | 0.34% | — | Xpdf Project Xpdf | 16/8/2022 | 17/6/2026 | XPDF commit ffaf11c was discovered to contain a heap-buffer overflow via DCTStream::transformDataUnit at /xpdf/Stream.cc. | |
| Modificada | Alta (7.8) | 0.34% | — | Xpdf Project Xpdf | 16/8/2022 | 17/6/2026 | XPDF commit ffaf11c was discovered to contain a stack overflow via __asan_memcpy at asan_interceptors_memintrinsics.cpp. | |
| Modificada | Alta (7.8) | 1.1% | — | Xpdfreader Xpdf | 28/6/2022 | 17/6/2026 | XPDF v4.04 was discovered to contain a stack overflow vulnerability via the Object::Copy class of object.cc files. |