CVE-2022-24107: Integer Overflow
Published Aug 30, 2022
·Updated
Xpdf prior to 4.04 lacked an integer overflow check in JPXStream.cc.
Affected Software
1 affected component
Glyphandcog Xpdfreader<4.04
Event History
Aug 30, 2022
CVE Published
via MITRE·03:04 AM
Data Sourced
via MITRE·03:04 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2022-24107?
CVE-2022-24107 has a medium severity rating due to the potential for an integer overflow vulnerability.
2
How does CVE-2022-24107 affect Xpdf versions prior to 4.04?
CVE-2022-24107 affects Xpdf versions prior to 4.04 by lacking an integer overflow check, which can lead to exploitation.
3
How do I fix CVE-2022-24107?
To fix CVE-2022-24107, update to Xpdf version 4.04 or later.
4
What is the nature of the vulnerability described in CVE-2022-24107?
The nature of the vulnerability described in CVE-2022-24107 is that it involves an integer overflow in the JPXStream.cc file.
5
What software is impacted by CVE-2022-24107?
CVE-2022-24107 impacts the XpdfReader software in versions prior to 4.04.