CVE-2022-43295: Medium severity Xpdfreader Xpdf vulnerability
Published Nov 14, 2022
·Updated
XPDF v4.04 was discovered to contain a stack overflow via the function FileStream::copy() at xpdf/Stream.cc:795.
Affected Software
1 affected component
Xpdfreader Xpdf=4.04
Event History
Nov 14, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·09:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID is CVE-2022-43295.
2
What is the severity rating of CVE-2022-43295?
The severity rating of CVE-2022-43295 is medium, with a CVSS score of 5.5.
3
Which software version is affected by CVE-2022-43295?
XPDF version 4.04 is affected by CVE-2022-43295.
4
What is the CWE ID for this vulnerability?
The CWE ID for CVE-2022-43295 is CWE-787.
5
Is there a known fix for CVE-2022-43295?
At the moment, there is no known fix available for CVE-2022-43295. It is recommended to apply any official patches or updates provided by the software vendor once they become available.