Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
XRef::fetch in XRef.cc in Xpdf 4.00 allows remote attackers to cause a denial of service (stack consumption) via a crafted pdf file, related to AcroForm::scanField, as demonstrated by pdftohtml. NOTE: this might overlap CVE-2018-7453.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Xpdf 缓冲区错误漏洞
Vulnerability Description
Xpdf是Foo实验室开发的一款开源的PDF阅读器,它支持解码LZW压缩格式的文件以及阅读加密的PDF文件。 Xpdf 4.00版本中的XRef.cc文件的‘XRef::fetch’函数存在基于栈的缓冲区溢出漏洞。远程攻击者可借助特制的pdf文件利用该漏洞造成拒绝服务(栈消耗)。
CVSS Information
N/A
Vulnerability Type
N/A