CVE-2024-46478: Buffer Overflow
Published Oct 24, 2024
·Updated
HTMLDOC v1.9.18 contains a buffer overflow in parsepre function,ps-pdf.cxx:5681.
Affected Software
3 affected componentsFixes available
debian/htmldoc<=1.9.11-4+deb11u3, <=1.9.16-1
1.9.20-1
HTMLDOC HTMLDOC
Htmldoc Project Htmldoc=1.9.18
Remediation
Event History
Oct 24, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·06:15 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·06:15 PM
RemedyAffected Software
Feb 1, 2025
Data Sourced
via Ubuntu·12:03 PM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-46478?
CVE-2024-46478 is classified as a high severity vulnerability due to its buffer overflow nature.
2
How do I fix CVE-2024-46478?
To fix CVE-2024-46478, upgrade to HTMLDOC version 1.9.20-1 or later.
3
Which versions of HTMLDOC are affected by CVE-2024-46478?
HTMLDOC versions up to and including 1.9.18 are affected by CVE-2024-46478.
4
Where in the source code does CVE-2024-46478 occur?
CVE-2024-46478 occurs in the parse_pre function located in ps-pdf.cxx at line 5681.
5
Is there a public disclosure for CVE-2024-46478?
Yes, CVE-2024-46478 has public disclosures available through various security channels.