5.5

CVE-2022-35091

Exploit
SWFTools commit 772e55a2 was discovered to contain a floating point exception (FPE) via DCTStream::readMCURow() at /xpdf/Stream.cc.ow()
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
SwftoolsSwftools Version2021-12-16
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.37% 0.285
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 5.5 1.8 3.6
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
CISA-ADP 5.5 1.8 3.6
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
CWE-697 Incorrect Comparison

The product compares two entities in a security-relevant context, but the comparison is incorrect.

https://github.com/matthiaskramm/swftools/issues/182
Third Party Advisory
Exploit
Issue Tracking
https://github.com/Cvjark/Poc/blob/main/swftools/pdf2swf/CVE-2022-35091.md
Third Party Advisory
Exploit