Search CVE reports


Toggle filters

41 – 50 of 206 results


CVE-2019-15860

Medium priority
Needs evaluation

Xpdf 2.00 allows a SIGSEGV in XRef::constructXRef in XRef.cc. NOTE: 2.00 is a version from November 2002.

3 affected packages

ipe, poppler, xpdf

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ipe Needs evaluation Needs evaluation Needs evaluation Ignored Ignored
poppler Not affected Not affected Not affected Not affected Not affected
xpdf Not affected Not affected Not affected Not in release Not affected
Show less packages

CVE-2019-14494

Medium priority
Fixed

An issue was discovered in Poppler through 0.78.0. There is a divide-by-zero error in the function SplashOutputDev::tilingPatternFill at SplashOutputDev.cc.

1 affected package

poppler

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
poppler Fixed
Show less packages

CVE-2019-14294

Medium priority
Needs evaluation

An issue was discovered in Xpdf 4.01.01. There is a use-after-free in the function JPXStream::fillReadBuf at JPXStream.cc, due to an out of bounds read.

4 affected packages

ipe, libextractor, poppler, xpdf

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ipe Needs evaluation Needs evaluation Needs evaluation Ignored Ignored
libextractor Not affected Not affected Not affected Not affected Not affected
poppler Not affected Not affected Not affected Not affected Not affected
xpdf Not affected Not affected Not affected Not in release Not affected
Show less packages

CVE-2019-14293

Medium priority
Needs evaluation

An issue was discovered in Xpdf 4.01.01. There is an out of bounds read in the function GfxPatchMeshShading::parse at GfxState.cc for typeA!=6 case 2.

4 affected packages

ipe, libextractor, poppler, xpdf

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ipe Needs evaluation Needs evaluation Needs evaluation Ignored Ignored
libextractor Not affected Not affected Not affected Not affected Not affected
poppler Not affected Not affected Not affected Not affected Not affected
xpdf Not affected Not affected Not affected Not in release Not affected
Show less packages

CVE-2019-14292

Medium priority
Needs evaluation

An issue was discovered in Xpdf 4.01.01. There is an out of bounds read in the function GfxPatchMeshShading::parse at GfxState.cc for typeA!=6 case 1.

4 affected packages

ipe, libextractor, xpdf, poppler

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ipe Needs evaluation Needs evaluation Needs evaluation Ignored Ignored
libextractor Not affected Not affected Not affected Not affected Not affected
xpdf Not affected Not affected Not affected Not in release Not affected
poppler Not affected Not affected Not affected Not affected Not affected
Show less packages

CVE-2019-14291

Medium priority
Needs evaluation

An issue was discovered in Xpdf 4.01.01. There is an out of bounds read in the function GfxPatchMeshShading::parse at GfxState.cc for typeA==6 case 3.

4 affected packages

ipe, libextractor, poppler, xpdf

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ipe Needs evaluation Needs evaluation Needs evaluation Ignored Ignored
libextractor Not affected Not affected Not affected Not affected Not affected
poppler Not affected Not affected Not affected Not affected Not affected
xpdf Not affected Not affected Not affected Not in release Not affected
Show less packages

CVE-2019-14290

Medium priority
Needs evaluation

An issue was discovered in Xpdf 4.01.01. There is an out of bounds read in the function GfxPatchMeshShading::parse at GfxState.cc for typeA==6 case 2.

4 affected packages

ipe, libextractor, poppler, xpdf

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ipe Needs evaluation Needs evaluation Needs evaluation Ignored Ignored
libextractor Not affected Not affected Not affected Not affected Not affected
poppler Not affected Not affected Not affected Not affected Not affected
xpdf Not affected Not affected Not affected Not in release Not affected
Show less packages

CVE-2019-14289

Medium priority
Needs evaluation

An issue was discovered in Xpdf 4.01.01. There is an integer overflow in the function JBIG2Bitmap::combine at JBIG2Stream.cc for the "multiple bytes per line" case.

4 affected packages

ipe, libextractor, poppler, xpdf

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ipe Needs evaluation Needs evaluation Needs evaluation Ignored Ignored
libextractor Not affected Not affected Not affected Not affected Not affected
poppler Not affected Not affected Not affected Not affected Not affected
xpdf Not affected Not affected Not affected Not in release Not affected
Show less packages

CVE-2019-14288

Medium priority
Needs evaluation

An issue was discovered in Xpdf 4.01.01. There is an Integer overflow in the function JBIG2Bitmap::combine at JBIG2Stream.cc for the "one byte per line" case.

4 affected packages

ipe, libextractor, poppler, xpdf

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ipe Needs evaluation Needs evaluation Needs evaluation Ignored Ignored
libextractor Not affected Not affected Not affected Not affected Not affected
poppler Not affected Not affected Not affected Not affected Not affected
xpdf Not affected Not affected Not affected Not in release Not affected
Show less packages

CVE-2019-9959

Low priority

Some fixes available 2 of 15

The JPXStream::init function in Poppler 0.78.0 and earlier doesn't check for negative values of stream length, leading to an Integer Overflow, thereby making it possible to allocate a large memory chunk on the heap, with a size...

2 affected packages

emscripten, poppler

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
emscripten Ignored Ignored Not in release Ignored
poppler Not affected Not affected Not affected Fixed
Show less packages