CVE-2022-38236

Severity CVSS v4.0:
Pending analysis
Type:
CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
Publication date:
16/08/2022
Last modified:
18/08/2022

Description

XPDF commit ffaf11c was discovered to contain a global-buffer overflow via Lexer::getObj(Object*) at /xpdf/Lexer.cc.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:xpdf_project:xpdf:3.04:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools