Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.1.10.2024.0035
Category:Mageia Linux Local Security Checks
Title:Mageia: Security Advisory (MGASA-2024-0035)
Summary:The remote host is missing an update for the 'xpdf' package(s) announced via the MGASA-2024-0035 advisory.
Description:Summary:
The remote host is missing an update for the 'xpdf' package(s) announced via the MGASA-2024-0035 advisory.

Vulnerability Insight:
The updated packages fix security vulnerabilities:
Logic bug in text extractor led to invalid memory access.
(CVE-2022-30524)
Integer overflow in rasterizer. (CVE-2022-30775)
PDF object loop in Catalog::countPageTree. (CVE-2022-33108)
PDF object loop in AcroForm::scanField. (CVE-2022-36561)
Logic bug in JBIG2 decoder. (CVE-2022-38222)
PDF object loop in Catalog::countPageTree. (CVE-2022-38334)
Missing bounds check in CFF font converter caused null pointer
dereference. (CVE-2022-38928)
PDF object loop in Catalog::countPageTree. (CVE-2022-41842)
Missing bounds check in CFF font parser caused invalid memory access.
(CVE-2022-41843)
PDF object loop in AcroForm::scanField. (CVE-2022-41844)
PDF object loop in Catalog::readPageLabelTree2. (CVE-2022-43071)
PDF object loop in Catalog::countPageTree. (CVE-2022-43295)
PDF object loop in Catalog::countPageTree. (CVE-2022-45586)
PDF object loop in Catalog::countPageTree. (CVE-2022-45587)
Divide-by-zero in Xpdf 4.04 due to bad color space object.
(CVE-2023-2662)
PDF object loop in Catalog::readPageLabelTree2. (CVE-2023-2663)
PDF object loop in Catalog::readEmbeddedFileTree. (CVE-2023-2664)
Divide-by-zero in Xpdf 4.04 due to very large page size. (CVE-2023-3044)
Deadlock in Xpdf 4.04 due to PDF object stream references.
(CVE-203-3436)

Affected Software/OS:
'xpdf' package(s) on Mageia 9.

Solution:
Please install the updated package(s).

CVSS Score:
6.8

CVSS Vector:
AV:N/AC:M/Au:N/C:P/I:P/A:P

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2022-30524
https://forum.xpdfreader.com/viewtopic.php?f=3&t=42261
Common Vulnerability Exposure (CVE) ID: CVE-2022-30775
https://forum.xpdfreader.com/viewtopic.php?f=3&t=42264
Common Vulnerability Exposure (CVE) ID: CVE-2022-33108
https://forum.xpdfreader.com/viewtopic.php?f=3&t=42284
https://forum.xpdfreader.com/viewtopic.php?f=3&t=42286
https://forum.xpdfreader.com/viewtopic.php?f=3&t=42287
Common Vulnerability Exposure (CVE) ID: CVE-2022-36561
https://forum.xpdfreader.com/viewtopic.php?f=3&t=42308
Common Vulnerability Exposure (CVE) ID: CVE-2022-38222
https://forum.xpdfreader.com/viewtopic.php?f=3&t=42320
Common Vulnerability Exposure (CVE) ID: CVE-2022-38334
https://forum.xpdfreader.com/viewtopic.php?f=3&t=42122
https://forum.xpdfreader.com/viewtopic.php?f=3&t=42314&p=43872
Common Vulnerability Exposure (CVE) ID: CVE-2022-38928
https://forum.xpdfreader.com/viewtopic.php?f=3&t=42325&sid=7b08ba9a518a99ce3c5ff40e53fc6421
Common Vulnerability Exposure (CVE) ID: CVE-2022-41842
http://www.xpdfreader.com/download.html
https://forum.xpdfreader.com/viewtopic.php?f=1&t=42340&p=43928&hilit=gfseek#p43928
Common Vulnerability Exposure (CVE) ID: CVE-2022-41843
https://forum.xpdfreader.com/viewtopic.php?f=1&t=42344
Common Vulnerability Exposure (CVE) ID: CVE-2022-41844
https://forum.xpdfreader.com/viewtopic.php?f=3&t=42308&p=43844&hilit=XRef%3A%3Afetch#p43844
Common Vulnerability Exposure (CVE) ID: CVE-2022-43071
https://forum.xpdfreader.com/viewtopic.php?f=3&t=42349&p=43959#p43959
Common Vulnerability Exposure (CVE) ID: CVE-2022-43295
https://forum.xpdfreader.com/viewtopic.php?t=42360
Common Vulnerability Exposure (CVE) ID: CVE-2022-45586
https://forum.xpdfreader.com/viewtopic.php?t=42361
Common Vulnerability Exposure (CVE) ID: CVE-2022-45587
Common Vulnerability Exposure (CVE) ID: CVE-2023-2662
https://forum.xpdfreader.com/viewtopic.php?t=42505
Common Vulnerability Exposure (CVE) ID: CVE-2023-2663
https://forum.xpdfreader.com/viewtopic.php?t=42421
Common Vulnerability Exposure (CVE) ID: CVE-2023-2664
https://forum.xpdfreader.com/viewtopic.php?t=42422
Common Vulnerability Exposure (CVE) ID: CVE-2023-3044
https://github.com/baker221/poc-xpdf
https://www.xpdfreader.com/security-bug/CVE-2023-3044.html
Common Vulnerability Exposure (CVE) ID: CVE-2023-3436
https://forum.xpdfreader.com/viewtopic.php?t=42618
CopyrightCopyright (C) 2024 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.