CVE-2019-14293: Medium severity glyph & cog xpdfreader vulnerability
Published Jul 27, 2019
·Updated
An issue was discovered in Xpdf 4.01.01. There is an out of bounds read in the function GfxPatchMeshShading::parse at GfxState.cc for typeA!=6 case 2.
Affected Software
1 affected component
Glyphandcog Xpdfreader=4.01.01
Event History
Jul 27, 2019
CVE Published
via MITRE·06:40 PM
Data Sourced
via MITRE·06:40 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-14293?
CVE-2019-14293 is classified as a medium severity vulnerability.
2
How do I fix CVE-2019-14293?
To fix CVE-2019-14293, update XpdfReader to version 4.01.02 or later.
3
What types of attacks can exploit CVE-2019-14293?
CVE-2019-14293 can be exploited through crafted PDF files that cause an out of bounds read.
4
Which version of Xpdf is affected by CVE-2019-14293?
CVE-2019-14293 affects Xpdf version 4.01.01.
5
What is the impact of exploiting CVE-2019-14293?
Exploiting CVE-2019-14293 may lead to application crashes or information disclosure.