CVE-2019-10026

CWE-3698 documents6 sources
Severity
5.5MEDIUM
EPSS
0.2%
top 62.68%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMar 25
Latest updateMay 14

Description

An issue was discovered in Xpdf 4.01.01. There is an FPE in the function PostScriptFunction::exec in Function.cc for the psOpRoll case.

CVSS vector

CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:HExploitability: 1.8 | Impact: 3.6

Affected Packages2 packages

NVDxpdfreader/xpdf4.01.01
Ubuntupoppler< 0.41.0-0ubuntu1.13+1

🔴Vulnerability Details

3
GHSA
GHSA-cpvm-4fv9-r67x: An issue was discovered in Xpdf 42022-05-14
OSV
CVE-2019-10026: An issue was discovered in Xpdf 42019-03-25
CVEList
CVE-2019-10026: An issue was discovered in Xpdf 42019-03-24

📋Vendor Advisories

1
Debian
CVE-2019-10026: xpdf - An issue was discovered in Xpdf 4.01.01. There is an FPE in the function PostScr...2019

💬Community

3
Bugzilla
CVE-2019-10026 xpdf: floating point exception in function PostScriptFunction::exec in Function.cc [fedora-all]2019-03-28
Bugzilla
CVE-2019-10026 xpdf: floating point exception in function PostScriptFunction::exec in Function.cc2019-03-28
Bugzilla
CVE-2019-10026 xpdf: floating point exception in function PostScriptFunction::exec in Function.cc [epel-all]2019-03-28
CVE-2019-10026 (MEDIUM CVSS 5.5) | An issue was discovered in Xpdf 4.0 | cvebase.io