6.5 CVE-2022-27337

Exploit
 

A logic error in the Hints::Hints function of Poppler v22.03.0 allows attackers to cause a Denial of Service (DoS) via a crafted PDF file.
https://nvd.nist.gov/vuln/detail/CVE-2022-27337

Categories

CWE-NVD-Other

References


 

CPE

cpe start end
Configuration 1
cpe:2.3:a:freedesktop:poppler:22.03.0:*:*:*:*:*:*:*
Configuration 2
cpe:2.3:o:fedoraproject:fedora:36:*:*:*:*:*:*:*
Configuration 3
cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:*


REMEDIATION




EXPLOITS


Exploit-db.com

id description date
No known exploits

POC Github

Url
No known exploits

Other Nist (github, ...)

Url
https://gitlab.freedesktop.org/poppler/poppler/-/issues/1230
https://gitlab.freedesktop.org/poppler/poppler/-/issues/1230#note_1372177
https://gitlab.freedesktop.org/poppler/poppler/-/issues/1230
https://gitlab.freedesktop.org/poppler/poppler/-/issues/1230#note_1372177


CAPEC


Common Attack Pattern Enumerations and Classifications

id description severity
No entry