Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2022-38235PUBLISHED: 2022-08-16XPDF commit ffaf11c was discovered to contain a segmentation violation via DCTStream::getChar() at /xpdf/Stream.cc.
CVE-2022-38236PUBLISHED: 2022-08-16XPDF commit ffaf11c was discovered to contain a global-buffer overflow via Lexer::getObj(Object*) at /xpdf/Lexer.cc.
CVE-2022-38237PUBLISHED: 2022-08-16XPDF commit ffaf11c was discovered to contain a heap-buffer overflow via DCTStream::readScan() at /xpdf/Stream.cc.
CVE-2022-38238PUBLISHED: 2022-08-16XPDF commit ffaf11c was discovered to contain a heap-buffer overflow via DCTStream::lookChar() at /xpdf/Stream.cc.
CVE-2022-36141PUBLISHED: 2022-08-16SWFMill commit 53d7690 was discovered to contain a segmentation violation via SWF::MethodBody::write(SWF::Writer*, SWF::Context*).
User Rank: Apprentice
1/25/2015 | 1:58:41 PM
They were victimized because they didn't patch software. It has nothing to do with the source code being open or closed. It could have been unpatched IIS or anything else. Hello, 1998 called and they would like their tech story back.