2024-07-14 02:06:08 +00:00

60 lines
1.8 KiB
JSON

{
"id": "CVE-2024-4141",
"sourceIdentifier": "xpdf@xpdfreader.com",
"published": "2024-04-24T19:15:47.953",
"lastModified": "2024-04-24T19:58:40.710",
"vulnStatus": "Awaiting Analysis",
"cveTags": [],
"descriptions": [
{
"lang": "en",
"value": "Out-of-bounds array write in Xpdf 4.05 and earlier, triggered by an invalid character code in a Type 1 font. The root problem was a bounds check that was being optimized away by modern compilers.\n"
},
{
"lang": "es",
"value": "Escritura de matriz fuera de los l\u00edmites en Xpdf 4.05 y versiones anteriores, provocada por un c\u00f3digo de car\u00e1cter no v\u00e1lido en una fuente Tipo 1. La ra\u00edz del problema era una verificaci\u00f3n de los l\u00edmites que los compiladores modernos estaban optimizando."
}
],
"metrics": {
"cvssMetricV31": [
{
"source": "xpdf@xpdfreader.com",
"type": "Secondary",
"cvssData": {
"version": "3.1",
"vectorString": "CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L",
"attackVector": "LOCAL",
"attackComplexity": "HIGH",
"privilegesRequired": "NONE",
"userInteraction": "NONE",
"scope": "UNCHANGED",
"confidentialityImpact": "NONE",
"integrityImpact": "NONE",
"availabilityImpact": "LOW",
"baseScore": 2.9,
"baseSeverity": "LOW"
},
"exploitabilityScore": 1.4,
"impactScore": 1.4
}
]
},
"weaknesses": [
{
"source": "xpdf@xpdfreader.com",
"type": "Secondary",
"description": [
{
"lang": "en",
"value": "CWE-787"
}
]
}
],
"references": [
{
"url": "https://www.xpdfreader.com/security-bug/CVE-2024-4141.html",
"source": "xpdf@xpdfreader.com"
}
]
}