First published: Tue Sep 03 2019(Updated: )
Xpdf 2.00 allows a SIGSEGV in XRef::constructXRef in XRef.cc. NOTE: 2.00 is a version from November 2002.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Glyph & Cog XpdfReader | =2.00 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-15860 is considered a critical vulnerability due to the potential for crashes caused by access violations.
To fix CVE-2019-15860, update to a newer, patched version of XpdfReader that addresses this vulnerability.
CVE-2019-15860 specifically affects version 2.00 of XpdfReader released in November 2002.
CVE-2019-15860 is classified as a segmentation fault vulnerability, which can lead to application crashes.
There are no recommended workarounds for CVE-2019-15860; the best course of action is to upgrade the software.