Xpdf
cpe:2.3:a:xpdfreader:xpdf:*:*:*:*:*:*:*
- <= 4.06
A vulnerability allowing out-of-bounds array writes has been identified in Xpdf versions through 4.06. This issue arises from improper validation of the 'N' field in ICCBased color spaces, leading to potential memory corruption.
Exploitation of this vulnerability could result in memory corruption, which may be leveraged to execute arbitrary code or cause a denial-of-service condition.
Users can upgrade to Xpdf version 4.07 to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.