Lucene search

K
redhatcveRedhat.comRH:CVE-2018-18650
HistoryMay 20, 2022 - 10:54 p.m.

CVE-2018-18650

2022-05-2022:54:59
redhat.com
access.redhat.com
6
xpdf 4.00
denial of service
integer overflow
crafted pdf size
xref::readxrefstream
memory allocation
cve-2018-18650

EPSS

0.001

Percentile

24.9%

An issue was discovered in Xpdf 4.00. XRef::readXRefStream in XRef.cc allows attackers to launch a denial of service (Integer Overflow) via a crafted /Size value in a pdf file, as demonstrated by pdftohtml. This is mainly caused by the program attempting a malloc operation for a large amount of memory.

EPSS

0.001

Percentile

24.9%

Related for RH:CVE-2018-18650