CVE-2022-45586: Medium severity xpdf vulnerability
Published Feb 15, 2023
·Updated
Stack overflow vulnerability in function Dict::find in xpdf/Dict.cc in xpdf 4.04, allows local attackers to cause a denial of service.
Affected Software
1 affected component
Xpdfreader Xpdf=4.04
Event History
Feb 15, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID of this issue?
The vulnerability ID of this issue is CVE-2022-45586.
2
What is the title of the vulnerability?
The title of the vulnerability is 'Stack overflow vulnerability in function Dict::find in xpdf/Dict.cc in xpdf 4.04 allows local attackers to cause a denial of service.'
3
What is the affected software?
The affected software is Xpdf 4.04.
4
What is the severity of this vulnerability?
The severity of this vulnerability is medium with a severity value of 5.5.
5
How can I mitigate the vulnerability?
To mitigate this vulnerability, it is recommended to update Xpdf to a version that is not affected by the vulnerability.