Pdfjam is a command-line utility for manipulating and combining PDF files, presenting a narrow but somewhat prominent attack surface centered on file-handling operations. Its observed vulnerability profile centers on improper link resolution and symlink-following issues that can arise when processing untrusted PDF inputs or directory structures, a weakness class characteristic of utilities that interact with the filesystem during document processing. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Pdfjam over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2008-5743MEDIUM pdfjam creates the (1) pdf90, (2) pdfjoin, and (3) pdfnup files with a predictable name, which allows local users to overwrite arbitrary files via a symlink attack. | Dec 26, 2008 | 6.9 | 20 | NO | NO |
CVE-2008-5843MEDIUM Multiple untrusted search path vulnerabilities in pdfjam allow local users to gain privileges via a Trojan horse program in (1) the current working directory or (2) /var/tmp, relat | Jan 5, 2009 | 4.6 | 16 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Pdfjam.
Media articles that mention a CVE ID that affects a product developed by Pdfjam — matched by CVE ID, not by vendor name.