CVE-2019-14290: Medium severity glyph & cog xpdfreader vulnerability
Published Jul 27, 2019
·Updated
An issue was discovered in Xpdf 4.01.01. There is an out of bounds read in the function GfxPatchMeshShading::parse at GfxState.cc for typeA==6 case 2.
Affected Software
1 affected component
Glyphandcog Xpdfreader=4.01.01
Event History
Jul 27, 2019
CVE Published
via MITRE·06:39 PM
Data Sourced
via MITRE·06:39 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-14290?
CVE-2019-14290 is classified as a high severity vulnerability.
2
How do I fix CVE-2019-14290?
To fix CVE-2019-14290, upgrade to the latest version of Xpdf that addresses this out of bounds read issue.
3
What specific software is affected by CVE-2019-14290?
CVE-2019-14290 affects Xpdf version 4.01.01.
4
What type of vulnerability is CVE-2019-14290?
CVE-2019-14290 is an out of bounds read vulnerability.
5
Where does CVE-2019-14290 occur in the code?
CVE-2019-14290 occurs in the function GfxPatchMeshShading::parse in GfxState.cc.