CVE-2022-45587: Medium severity xpdf vulnerability
Published Feb 15, 2023
·Updated
Stack overflow vulnerability in function gmalloc in goo/gmem.cc in xpdf 4.04, allows local attackers to cause a denial of service.
Affected Software
1 affected component
Xpdfreader Xpdf=4.04
Event History
Feb 15, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2022-45587.
2
What is the title of the vulnerability?
The title of the vulnerability is 'Stack overflow vulnerability in function gmalloc in goo/gmem.cc in xpdf 4.04'.
3
What is the severity of CVE-2022-45587?
The severity of CVE-2022-45587 is medium with a score of 5.5.
4
What software version is affected by CVE-2022-45587?
The software version affected by CVE-2022-45587 is Xpdf 4.04.
5
How can the vulnerability be exploited?
The vulnerability can be exploited by local attackers to cause a denial of service.
6
Is there any official reference for CVE-2022-45587?
Yes, you can find the official reference for CVE-2022-45587 at https://forum.xpdfreader.com/viewtopic.php?t=42361.
7
What is the Common Weakness Enumeration (CWE) ID for CVE-2022-45587?
The CWE ID for CVE-2022-45587 is CWE-787.