Skip to content

CVE-2013-4472

The openTempFile function in goo/gfile.cc in Xpdf and Poppler 0.24.3 and earlier, when running on a system other than Unix, allows local users to overwrite arbitrary files via a symlink attack on temporary files with predictable names.

Ver en NVD

Severidad

N/A

EPSS

Probabilidad de explotación (próx. 30 días): 0.0006 (0.1%)
Percentil: 19.6%
EPSS: 2026-05-06

Afecta

freedesktop:poppler

Descripción técnica

The openTempFile function in goo/gfile.cc in Xpdf and Poppler 0.24.3 and earlier, when running on a system other than Unix, allows local users to overwrite arbitrary files via a symlink attack on temporary files with predictable names.

Publicada: 22/4/2014, 14:23:34
Última modificación: 6/5/2026, 22:30:45

Referencias

InicioEventosBlogRecursosEquipo