Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2005-3624

Опубликовано: 31 дек. 2005
Источник: debian
EPSS Низкий

Описание

The CCITTFaxStream::CCITTFaxStream function in Stream.cc for xpdf, gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others allows attackers to corrupt the heap via negative or large integers in a CCITTFaxDecode stream, which lead to integer overflows and integer underflows.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
popplerfixed0.4.4-1package
tetex-binfixed3.0-12package
gpdffixed2.10.0-2package
kdegraphicsfixed4:3.5.0-3package
xpdffixed3.01-4package
kofficefixed1:1.4.2-6package
libextractorfixed0.5.9-1package
pdfkit.frameworkfixed0.8-4package
pdftohtmlfixed0.36-12package
cupsfixed1.1.22-7package
cupsysfixed1.1.22-7package

Примечания

  • cupsys switched to an external PDF implementation in 1.1.22-7.

  • tetex-bin switched to poppler in 3.0-12.

EPSS

Процентиль: 91%
0.07223
Низкий

Связанные уязвимости

ubuntu
больше 19 лет назад

The CCITTFaxStream::CCITTFaxStream function in Stream.cc for xpdf, gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others allows attackers to corrupt the heap via negative or large integers in a CCITTFaxDecode stream, which lead to integer overflows and integer underflows.

redhat
больше 19 лет назад

The CCITTFaxStream::CCITTFaxStream function in Stream.cc for xpdf, gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others allows attackers to corrupt the heap via negative or large integers in a CCITTFaxDecode stream, which lead to integer overflows and integer underflows.

nvd
больше 19 лет назад

The CCITTFaxStream::CCITTFaxStream function in Stream.cc for xpdf, gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others allows attackers to corrupt the heap via negative or large integers in a CCITTFaxDecode stream, which lead to integer overflows and integer underflows.

github
больше 3 лет назад

The CCITTFaxStream::CCITTFaxStream function in Stream.cc for xpdf, gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others allows attackers to corrupt the heap via negative or large integers in a CCITTFaxDecode stream, which lead to integer overflows and integer underflows.

fstec
больше 19 лет назад

Уязвимости операционной системы Gentoo Linux, позволяющие удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

EPSS

Процентиль: 91%
0.07223
Низкий