CVE Vulnerabilities

CVE-2023-3044

Divide By Zero

Published: Jun 02, 2023 | Modified: Nov 21, 2024
CVSS 3.x
3.3
LOW
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
LOW
root.io logo minimus.io logo echo.ai logo

An excessively large PDF page size (found in fuzz testing, unlikely in normal PDF files) can result in a divide-by-zero in Xpdfs text extraction code.

This is related to CVE-2022-30524, but the problem here is caused by a very large page size, rather than by a very large character coordinate.

Weakness

The product divides a value by zero.

Affected Software

NameVendorStart VersionEnd Version
XpdfXpdfreader*4.05 (excluding)
IpeUbuntubionic*
IpeUbuntufocal*
IpeUbuntukinetic*
IpeUbuntulunar*
IpeUbuntumantic*
IpeUbuntuoracular*
IpeUbuntuplucky*
IpeUbuntutrusty*
IpeUbuntuxenial*
XpdfUbuntubionic*
XpdfUbuntukinetic*
XpdfUbuntulunar*
XpdfUbuntumantic*
XpdfUbuntuoracular*
XpdfUbuntuplucky*
XpdfUbuntutrusty*
XpdfUbuntuxenial*

References