CVE-2019-15860: Null Pointer Dereference
Published Sep 3, 2019
·Updated
Xpdf 2.00 allows a SIGSEGV in XRef::constructXRef in XRef.cc. NOTE: 2.00 is a version from November 2002.
Affected Software
1 affected component
Glyphandcog Xpdfreader=2.00
Event History
Sep 3, 2019
CVE Published
via MITRE·06:39 AM
Data Sourced
via MITRE·06:39 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-15860?
CVE-2019-15860 is considered a critical vulnerability due to the potential for crashes caused by access violations.
2
How do I fix CVE-2019-15860?
To fix CVE-2019-15860, update to a newer, patched version of XpdfReader that addresses this vulnerability.
3
What versions of XpdfReader are affected by CVE-2019-15860?
CVE-2019-15860 specifically affects version 2.00 of XpdfReader released in November 2002.
4
What type of vulnerability is CVE-2019-15860?
CVE-2019-15860 is classified as a segmentation fault vulnerability, which can lead to application crashes.
5
Is there any workaround for CVE-2019-15860?
There are no recommended workarounds for CVE-2019-15860; the best course of action is to upgrade the software.