Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
| Link | Providers |
|---|---|
| https://www.xpdfreader.com/security-bug/CVE-2026-4407.html |
|
Thu, 19 Mar 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 19 Mar 2026 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Xpdf
Xpdf xpdf |
|
| Vendors & Products |
Xpdf
Xpdf xpdf |
Wed, 18 Mar 2026 22:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Out-of-bounds array write in Xpdf 4.06 and earlier, due to incorrect validation of the "N" field in ICCBased color spaces. | |
| Title | Out-of-bounds array write in Xpdf 4.06 due to missing validation | |
| Weaknesses | CWE-20 CWE-787 |
|
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: GandC
Published:
Updated: 2026-03-19T14:01:35.168Z
Reserved: 2026-03-18T21:24:26.684Z
Link: CVE-2026-4407
Updated: 2026-03-19T14:01:29.932Z
Status : Awaiting Analysis
Published: 2026-03-18T22:16:26.437
Modified: 2026-03-19T13:25:00.570
Link: CVE-2026-4407
No data.
OpenCVE Enrichment
Updated: 2026-03-25T11:52:01Z