Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2005-3625

Опубликовано: 31 дек. 2005
Источник: debian
EPSS Средний

Описание

Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial of service (infinite loop) via streams that end prematurely, as demonstrated using the (1) CCITTFaxDecode and (2) DCTDecode streams, aka "Infinite CPU spins."

Пакеты

ПакетСтатусВерсия исправленияРелизТип
popplerfixed0.4.4-1package
tetex-binfixed3.0-12package
kdegraphicsfixed4:3.5.0-3package
xpdffixed3.01-4package
gpdffixed2.10.0-2package
kofficefixed1:1.4.2-6package
libextractorfixed0.5.9-1package
pdfkit.frameworkfixed0.8-4package
pdftohtmlfixed0.36-12package
cupsfixed1.1.22-7package
cupsysfixed1.1.22-7package

Примечания

  • cupsys switched to an external PDF implementation in 1.1.22-7.

  • tetex-bin switched to poppler in 3.0-12.

EPSS

Процентиль: 93%
0.11286
Средний

Связанные уязвимости

ubuntu
больше 19 лет назад

Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial of service (infinite loop) via streams that end prematurely, as demonstrated using the (1) CCITTFaxDecode and (2) DCTDecode streams, aka "Infinite CPU spins."

redhat
больше 19 лет назад

Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial of service (infinite loop) via streams that end prematurely, as demonstrated using the (1) CCITTFaxDecode and (2) DCTDecode streams, aka "Infinite CPU spins."

nvd
больше 19 лет назад

Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial of service (infinite loop) via streams that end prematurely, as demonstrated using the (1) CCITTFaxDecode and (2) DCTDecode streams, aka "Infinite CPU spins."

github
больше 3 лет назад

Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial of service (infinite loop) via streams that end prematurely, as demonstrated using the (1) CCITTFaxDecode and (2) DCTDecode streams, aka "Infinite CPU spins."

fstec
больше 19 лет назад

Уязвимости операционной системы Gentoo Linux, позволяющие удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

EPSS

Процентиль: 93%
0.11286
Средний