Known Vulnerabilities for products from Glyphandcog

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Glyphandcog".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2023-31554 json ** REJECT ** DO NOT USE THIS CVE RECORD. ConsultIDs: CVE-2023-2663. Reason: This record is a reservation duplicate of CVE-202... Not Provided 2023-05-10 2023-11-07
CVE-2022-24107 json ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 7.8 - HIGH 2022-08-30 2022-10-28
CVE-2022-24106 json ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 7.8 - HIGH 2022-08-30 2022-10-28
CVE-2021-40226 json ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 7.5 - HIGH 2022-11-10 2022-11-15
CVE-2019-17064 json Catalog.cc in Xpdf 4.02 has a NULL pointer dereference because Catalog.pageLabels is initialized too late in the Catalog cons... 5.5 - MEDIUM 2019-10-01 2023-11-07
CVE-2019-16927 json Xpdf 4.01.01 has an out-of-bounds write in the vertProfile part of the TextPage::findGaps function in TextOutputDev.cc, a dif... 5.5 - MEDIUM 2019-09-27 2019-10-01
CVE-2019-16115 json In Xpdf 4.01.01, a stack-based buffer under-read could be triggered in IdentityFunction::transform in Function.cc, used by Gf... 7.8 - HIGH 2019-09-08 2020-08-24
CVE-2019-16088 json Xpdf 3.04 has a SIGSEGV in XRef::fetch in XRef.cc after many recursive calls to Catalog::countPageTree in Catalog.cc. 5.5 - MEDIUM 2019-09-06 2020-08-24
CVE-2019-15860 json Xpdf 2.00 allows a SIGSEGV in XRef::constructXRef in XRef.cc. NOTE: 2.00 is a version from November 2002. 5.5 - MEDIUM 2019-09-03 2020-08-24
CVE-2019-14294 json An issue was discovered in Xpdf 4.01.01. There is a use-after-free in the function JPXStream::fillReadBuf at JPXStream.cc, du... 5.5 - MEDIUM 2019-07-27 2020-08-24
CVE-2019-14293 json An issue was discovered in Xpdf 4.01.01. There is an out of bounds read in the function GfxPatchMeshShading::parse at GfxStat... 5.5 - MEDIUM 2019-07-27 2019-07-29
CVE-2019-14292 json An issue was discovered in Xpdf 4.01.01. There is an out of bounds read in the function GfxPatchMeshShading::parse at GfxStat... 5.5 - MEDIUM 2019-07-27 2019-07-29
CVE-2019-14291 json An issue was discovered in Xpdf 4.01.01. There is an out of bounds read in the function GfxPatchMeshShading::parse at GfxStat... 5.5 - MEDIUM 2019-07-27 2019-07-29
CVE-2019-14290 json An issue was discovered in Xpdf 4.01.01. There is an out of bounds read in the function GfxPatchMeshShading::parse at GfxStat... 5.5 - MEDIUM 2019-07-27 2019-07-29
CVE-2019-14289 json An issue was discovered in Xpdf 4.01.01. There is an integer overflow in the function JBIG2Bitmap::combine at JBIG2Stream.cc ... 5.5 - MEDIUM 2019-07-27 2019-07-29
CVE-2019-14288 json An issue was discovered in Xpdf 4.01.01. There is an Integer overflow in the function JBIG2Bitmap::combine at JBIG2Stream.cc ... 7.8 - HIGH 2019-07-27 2019-07-29
CVE-2019-13291 json In Xpdf 4.01.01, there is a heap-based buffer over-read in the function DCTStream::readScan() located at Stream.cc. It can, f... 5.5 - MEDIUM 2019-07-04 2020-08-24
CVE-2019-13289 json In Xpdf 4.01.01, there is a use-after-free vulnerability in the function JBIG2Stream::close() located at JBIG2Stream.cc. It c... 7.8 - HIGH 2019-07-04 2019-07-09
CVE-2019-13288 json In Xpdf 4.01.01, the Parser::getObj() function in Parser.cc may cause infinite recursion via a crafted file. A remote attacke... 5.5 - MEDIUM 2019-07-04 2020-08-24
CVE-2019-13287 json In Xpdf 4.01.01, there is an out-of-bounds read vulnerability in the function SplashXPath::strokeAdjust() located at splash/S... 5.5 - MEDIUM 2019-07-04 2019-07-09

Known software with vulnerabilities from Glyphandcog

Type Vendor Product Version
ApplicationGlyphandcogXpdf3.02-19
ApplicationGlyphandcogXpdfreader0.2