|
223371
|
5.5 |
MEDIUM
Local
|
glyphandcog
|
xpdfreader
|
In Xpdf 4.01.01, there is an out-of-bounds read vulnerability in the function SplashXPath::strokeAdjust() located at splash/SplashXPath.cc. It can, for example, be triggered by sending a crafted PDF …
|
CWE-125
Out-of-bounds Read
|
CVE-2019-13287
|
2024-11-21 13:24 |
2019-07-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223372
|
5.5 |
MEDIUM
Local
|
glyphandcog fedoraproject
|
xpdfreader fedora
|
In Xpdf 4.01.01, there is a heap-based buffer over-read in the function JBIG2Stream::readTextRegionSeg() located at JBIG2Stream.cc. It can, for example, be triggered by sending a crafted PDF document…
|
CWE-125
Out-of-bounds Read
|
CVE-2019-13286
|
2024-11-21 13:24 |
2019-07-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223373
|
7.8 |
HIGH
Local
|
glyphandcog fedoraproject
|
xpdfreader fedora
|
In Xpdf 4.01.01, a heap-based buffer over-read could be triggered in SampledFunction::transform in Function.cc when using a large index for samples. It can, for example, be triggered by sending a cra…
|
CWE-125
Out-of-bounds Read
|
CVE-2019-13282
|
2024-11-21 13:24 |
2019-07-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223374
|
7.8 |
HIGH
Local
|
glyphandcog fedoraproject
|
xpdfreader fedora
|
In Xpdf 4.01.01, a heap-based buffer overflow could be triggered in DCTStream::decodeImage() in Stream.cc when writing to frameBuf memory. It can, for example, be triggered by sending a crafted PDF d…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-13281
|
2024-11-21 13:24 |
2019-07-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223375
|
9.8 |
CRITICAL
Network
|
veronalabs
|
wp_statistics
|
An issue was discovered in the VeronaLabs wp-statistics plugin before 12.6.7 for WordPress. The v1/hit endpoint of the API, when the non-default "use cache plugin" setting is enabled, is vulnerable t…
|
CWE-89
SQL Injection
|
CVE-2019-13275
|
2024-11-21 13:24 |
2019-07-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223376
|
7.8 |
HIGH
Local
|
glyphandcog fedoraproject
|
xpdfreader fedora
|
In Xpdf 4.01.01, a heap-based buffer over-read could be triggered in strncpy from FoFiType1::parse in fofi/FoFiType1.cc because it does not ensure the source string has a valid length before making a…
|
CWE-125
Out-of-bounds Read
|
CVE-2019-13283
|
2024-11-21 13:24 |
2019-07-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223377
|
7.8 |
HIGH
Local
|
xnview
|
xnview
|
XnView Classic 2.48 has a User Mode Write AV starting at xnview+0x00000000003283eb.
|
NVD-CWE-noinfo
|
CVE-2019-13262
|
2024-11-21 13:24 |
2019-07-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223378
|
7.8 |
HIGH
Local
|
xnview
|
xnview
|
XnView Classic 2.48 has a User Mode Write AV starting at xnview+0x0000000000328384.
|
NVD-CWE-noinfo
|
CVE-2019-13261
|
2024-11-21 13:24 |
2019-07-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223379
|
7.8 |
HIGH
Local
|
xnview
|
xnview
|
XnView Classic 2.48 has a User Mode Write AV starting at xnview+0x0000000000327a07.
|
NVD-CWE-noinfo
|
CVE-2019-13260
|
2024-11-21 13:24 |
2019-07-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223380
|
7.8 |
HIGH
Local
|
xnview
|
xnview
|
XnView Classic 2.48 has a User Mode Write AV starting at xnview+0x000000000032e566.
|
NVD-CWE-noinfo
|
CVE-2019-13259
|
2024-11-21 13:24 |
2019-07-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|