CVE-2018-7173: Medium severity Xpdfreader Xpdf vulnerability
Published Feb 15, 2018
·Updated
A large loop in JBIG2Stream::readSymbolDictSeg in xpdf 4.00 allows an attacker to cause denial of service via a specific file due to inappropriate decoding.
Affected Software
1 affected component
Xpdfreader Xpdf=4.00
Event History
Feb 15, 2018
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Data Sourced
via NVD·09:29 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2018-7173?
CVE-2018-7173 has a severity rating that may lead to denial of service due to a large loop vulnerability.
2
How do I fix CVE-2018-7173?
To fix CVE-2018-7173, update to a newer version of Xpdf that addresses this vulnerability.
3
What software is affected by CVE-2018-7173?
CVE-2018-7173 specifically affects Xpdf version 4.00.
4
What is the nature of CVE-2018-7173?
CVE-2018-7173 is a vulnerability that allows an attacker to cause denial of service through inappropriate decoding in the JBIG2Stream.
5
Can CVE-2018-7173 be exploited remotely?
Yes, CVE-2018-7173 can be exploited remotely by sending a specially crafted file to the target.