CVE-2021-4022610.11.2022, 18:15xpdfreader 4.03 is vulnerable to Buffer Overflow.EnginsightProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVectorNISTNIST7.5 HIGHNETWORKLOWNONECVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HmitreCNA------CVEADP------CISA-ADPADP7.5 HIGHNETWORKLOWNONECVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HBase ScoreCVSS 3.xEPSS ScorePercentile: 53%VendorProductVersionglyphandcogxpdfreader4.03𝑥= Vulnerable software versionsDebian ReleasesDebian ProductCodenamepopplerbullseye (security)20.09.0-3.1+deb11u1fixedbullseye20.09.0-3.1+deb11u1fixedbookworm22.12.0-2fixedsid24.08.0-3fixedtrixie24.08.0-3fixedUbuntu ReleasesUbuntu ProductCodenameipenobleneeds-triagemanticignoredlunarignoredkineticignoredjammyneeds-triagefocalneeds-triagebionicneeds-triagexenialneeds-triagetrustyignoredxpdfnobleneeds-triagemanticignoredlunarignoredkineticignoredjammyneeds-triagefocaldnebionicneeds-triagexenialneeds-triagetrustyignoredCommon Weakness EnumerationCWE-787 - Out-of-bounds WriteThe software writes data past the end, or before the beginning, of the intended buffer.Referenceshttps://forum.xpdfreader.com/viewtopic.php?f=3&t=42185https://forum.xpdfreader.com/viewtopic.php?f=3&t=42185