2024-05-02 04:03:30 +00:00

32 lines
1.1 KiB
JSON

{
"id": "CVE-2024-22640",
"sourceIdentifier": "cve@mitre.org",
"published": "2024-04-19T16:15:09.630",
"lastModified": "2024-05-02T03:15:14.890",
"vulnStatus": "Awaiting Analysis",
"descriptions": [
{
"lang": "en",
"value": "TCPDF version <=6.6.5 is vulnerable to ReDoS (Regular Expression Denial of Service) if parsing an untrusted HTML page with a crafted color."
},
{
"lang": "es",
"value": "La versi\u00f3n de TCPDF &lt;= 6.6.5 es vulnerable a ReDoS (denegaci\u00f3n de servicio de expresi\u00f3n regular) si se analiza una p\u00e1gina HTML que no es de confianza con un color manipulado."
}
],
"metrics": {},
"references": [
{
"url": "https://github.com/tecnickcom/TCPDF",
"source": "cve@mitre.org"
},
{
"url": "https://github.com/zunak/CVE-2024-22640",
"source": "cve@mitre.org"
},
{
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/LIB3R2WB7XPW2I4PGVMZ3VLFLRHOK4RB/",
"source": "cve@mitre.org"
}
]
}