First published: Mon Nov 14 2022(Updated: )
XPDF v4.04 was discovered to contain a stack overflow via the function FileStream::copy() at xpdf/Stream.cc:795.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Xpdfreader Xpdf | =4.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2022-43295.
The severity rating of CVE-2022-43295 is medium, with a CVSS score of 5.5.
XPDF version 4.04 is affected by CVE-2022-43295.
The CWE ID for CVE-2022-43295 is CWE-787.
At the moment, there is no known fix available for CVE-2022-43295. It is recommended to apply any official patches or updates provided by the software vendor once they become available.