Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-7423 | Muhammara is a node module with c/cpp bindings to modify PDF with js for node or electron (based/replacement on/of galkhana/hummusjs). The package muhammara before 2.6.0; all versions of package hummus are vulnerable to Denial of Service (DoS) when supplied with a maliciously crafted PDF file to be appended to another. This issue has been patched in 2.6.0 for muhammara and not at all for hummus. As a workaround, do not process files from untrusted sources. |
Github GHSA |
GHSA-rcrx-fpjp-mfrw | Unchecked Return Value to NULL Pointer Dereference in PDFDocumentHandler.cpp |
Tue, 22 Apr 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2025-04-22T16:09:05.431Z
Reserved: 2022-09-02T00:00:00.000Z
Link: CVE-2022-39381
Updated: 2024-08-03T12:07:41.238Z
Status : Modified
Published: 2022-11-02T15:15:10.543
Modified: 2024-11-21T07:18:10.657
Link: CVE-2022-39381
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA