Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
DEBIAN-CVE-2024-32489
See a problem?
Please try reporting it
to the source
first.
Source
https://security-tracker.debian.org/tracker/CVE-2024-32489
Import Source
https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2024-32489.json
JSON Data
https://api.osv.dev/v1/vulns/DEBIAN-CVE-2024-32489
Upstream
CVE-2024-32489
Published
2024-04-15T06:15:11.033Z
Modified
2025-11-20T10:17:11.926106Z
Severity
6.1 (Medium)
CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
CVSS Calculator
Summary
[none]
Details
TCPDF before 6.7.4 mishandles calls that use HTML syntax.
References
https://security-tracker.debian.org/tracker/CVE-2024-32489
Affected packages
Debian:11
/
tcpdf
Package
Name
tcpdf
Purl
pkg:deb/debian/tcpdf?arch=source
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
6.3.5+dfsg1-1+deb11u1
Affected versions
6.*
6.3.5+dfsg1-1
Ecosystem specific
{ "urgency": "not yet assigned" }
Debian:12
/
tcpdf
Package
Name
tcpdf
Purl
pkg:deb/debian/tcpdf?arch=source
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
6.6.2+dfsg1-1+deb12u1
Affected versions
6.*
6.6.2+dfsg1-1
Ecosystem specific
{ "urgency": "not yet assigned" }
Debian:13
/
tcpdf
Package
Name
tcpdf
Purl
pkg:deb/debian/tcpdf?arch=source
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
6.7.4+dfsg-1
Ecosystem specific
{ "urgency": "not yet assigned" }
Debian:14
/
tcpdf
Package
Name
tcpdf
Purl
pkg:deb/debian/tcpdf?arch=source
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
6.7.4+dfsg-1
Ecosystem specific
{ "urgency": "not yet assigned" }
DEBIAN-CVE-2024-32489 - OSV