SWFTools commit 772e55a2 was discovered to contain a floating point exception (FPE) via DCTStream::readMCURow() at /xpdf/Stream.cc.ow()
The product compares two entities in a security-relevant context, but the comparison is incorrect, which may lead to resultant weaknesses.
Link | Tags |
---|---|
https://github.com/matthiaskramm/swftools/issues/182 | issue tracking third party advisory exploit |
https://github.com/Cvjark/Poc/blob/main/swftools/pdf2swf/CVE-2022-35091.md | third party advisory exploit |