← Back

CVE-2024-43426

nvd nist
Published: Nov 7, 2024Modified: Jun 17, 2026

JSON object

Loading...
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Exploitability: 3.9 / Impact: 3.6
Source: patrick@puiterwijk.org (Secondary)

Description

A flaw was found in pdfTeX. Insufficient sanitizing in the TeX notation filter resulted in an arbitrary file read risk on sites where pdfTeX is available, such as those with TeX Live installed.

Affected (4)

Products: Moodle: Moodle
1 product
Moodle
Configuration A
4 vulnerable
Vulnerable SoftwareAffected Versions
Moodle
From 4.1.0 to 4.1.12
From 4.2.0 to 4.2.9
From 4.3.0 to 4.3.6
From 4.4.0 to 4.4.2

References (2)

Source: patrick@puiterwijk.org
Permissions Required
Source: patrick@puiterwijk.org
Vendor Advisory

Timeline

No history available yet.