Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-37050


In Poppler 22.07.0, PDFDoc::savePageAs in PDFDoc.c callows attackers to cause a denial-of-service (application crashes with SIGABRT) by crafting a PDF file in which the xref data structure is mishandled in getCatalog processing. Note that this vulnerability is caused by the incomplete patch of CVE-2018-20662.


Published

2023-08-22T19:16:23.657

Last Modified

2025-11-03T20:15:55.403

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 6.5 (MEDIUM)

Weaknesses
  • Type: Primary
    NVD-CWE-Other
  • Type: Secondary
    CWE-400

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application freedesktop poppler 22.07.0 Yes
Operating System debian debian_linux 10.0 Yes

References