Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

fstec логотип

BDU:2015-00991

Опубликовано: 01 янв. 2015
Источник: fstec
CVSS2: 9.3
EPSS Низкий

Описание

Множественные уязвимости пакета kdegraphics-dbg операционной системы Debian GNU/Linux, эксплуатация которых может привести к нарушению конфиденциальности, целостности и доступности защищаемой информации. Эксплуатация уязвимостей может быть осуществлена удаленно.

Вендор

Сообщество свободного программного обеспечения

Наименование ПО

Debian GNU/Linux

Версия ПО

до 5 (Debian GNU/Linux)

Тип ПО

Операционная система

Операционные системы и аппаратные платформы

-

Уровень опасности уязвимости

Высокий уровень опасности (базовая оценка CVSS 2.0 составляет 9,3)

Возможные меры по устранению уязвимости

Проблема может быть решена обновлением операционной системы до следующих версий пакетов в зависимости от архитектуры:
Debian GNU/Linux 5:
ppc:
ksvg - 3.5.9-3+lenny3
kcoloredit - 3.5.9-3+lenny3
kviewshell - 3.5.9-3+lenny3
kooka - 3.5.9-3+lenny3
kmrml - 3.5.9-3+lenny3
libkscan-dev - 3.5.9-3+lenny3
kdegraphics-dev - 3.5.9-3+lenny3
kfaxview - 3.5.9-3+lenny3
kghostview - 3.5.9-3+lenny3
kfax - 3.5.9-3+lenny3
kpdf - 3.5.9-3+lenny3
kuickshow - 3.5.9-3+lenny3
kdegraphics-kfile-plugins - 3.5.9-3+lenny3
kview - 3.5.9-3+lenny3
kdvi - 3.5.9-3+lenny3
kgamma - 3.5.9-3+lenny3
ksnapshot - 3.5.9-3+lenny3
kamera - 3.5.9-3+lenny3
kruler - 3.5.9-3+lenny3
kpovmodeler - 3.5.9-3+lenny3
kiconedit - 3.5.9-3+lenny3
kolourpaint - 3.5.9-3+lenny3
kdegraphics-dbg - 3.5.9-3+lenny3
libkscan1 - 3.5.9-3+lenny3
s390x:
kiconedit - 3.5.9-3+lenny3
kpovmodeler - 3.5.9-3+lenny3
kamera - 3.5.9-3+lenny3
kruler - 3.5.9-3+lenny3
kooka - 3.5.9-3+lenny3
kviewshell - 3.5.9-3+lenny3
libkscan1 - 3.5.9-3+lenny3
kfaxview - 3.5.9-3+lenny3
kmrml - 3.5.9-3+lenny3
kdvi - 3.5.9-3+lenny3
kdegraphics-kfile-plugins - 3.5.9-3+lenny3
kfax - 3.5.9-3+lenny3
kolourpaint - 3.5.9-3+lenny3
kgamma - 3.5.9-3+lenny3
ksvg - 3.5.9-3+lenny3
kview - 3.5.9-3+lenny3
kghostview - 3.5.9-3+lenny3
ksnapshot - 3.5.9-3+lenny3
kpdf - 3.5.9-3+lenny3
kdegraphics-dev - 3.5.9-3+lenny3
libkscan-dev - 3.5.9-3+lenny3
kdegraphics-dbg - 3.5.9-3+lenny3
kcoloredit - 3.5.9-3+lenny3
kuickshow - 3.5.9-3+lenny3
i686:
kdegraphics-dbg - 3.5.9-3+lenny3
kolourpaint - 3.5.9-3+lenny3
kdvi - 3.5.9-3+lenny3
kpdf - 3.5.9-3+lenny3
ksnapshot - 3.5.9-3+lenny3
kview - 3.5.9-3+lenny3
kuickshow - 3.5.9-3+lenny3
kruler - 3.5.9-3+lenny3
kdegraphics-kfile-plugins - 3.5.9-3+lenny3
kgamma - 3.5.9-3+lenny3
kmrml - 3.5.9-3+lenny3
kfaxview - 3.5.9-3+lenny3
kooka - 3.5.9-3+lenny3
kghostview - 3.5.9-3+lenny3
kdegraphics-dev - 3.5.9-3+lenny3
libkscan-dev - 3.5.9-3+lenny3
kamera - 3.5.9-3+lenny3
ksvg - 3.5.9-3+lenny3
libkscan1 - 3.5.9-3+lenny3
kcoloredit - 3.5.9-3+lenny3
kfax - 3.5.9-3+lenny3
kviewshell - 3.5.9-3+lenny3
kiconedit - 3.5.9-3+lenny3
kpovmodeler - 3.5.9-3+lenny3
hppa:
kgamma - 3.5.9-3+lenny3
kuickshow - 3.5.9-3+lenny3
kdegraphics-dbg - 3.5.9-3+lenny3
kviewshell - 3.5.9-3+lenny3
kpdf - 3.5.9-3+lenny3
kooka - 3.5.9-3+lenny3
kolourpaint - 3.5.9-3+lenny3
kpovmodeler - 3.5.9-3+lenny3
kiconedit - 3.5.9-3+lenny3
kruler - 3.5.9-3+lenny3
kview - 3.5.9-3+lenny3
kcoloredit - 3.5.9-3+lenny3
kamera - 3.5.9-3+lenny3
kghostview - 3.5.9-3+lenny3
kdegraphics-dev - 3.5.9-3+lenny3
kfaxview - 3.5.9-3+lenny3
kdvi - 3.5.9-3+lenny3
libkscan1 - 3.5.9-3+lenny3
ksvg - 3.5.9-3+lenny3
libkscan-dev - 3.5.9-3+lenny3
ksnapshot - 3.5.9-3+lenny3
kmrml - 3.5.9-3+lenny3
kdegraphics-kfile-plugins - 3.5.9-3+lenny3
kfax - 3.5.9-3+lenny3
sparc:
kgamma - 3.5.9-3+lenny3
kuickshow - 3.5.9-3+lenny3
kdegraphics-dbg - 3.5.9-3+lenny3
kiconedit - 3.5.9-3+lenny3
kdegraphics-dev - 3.5.9-3+lenny3
kooka - 3.5.9-3+lenny3
kview - 3.5.9-3+lenny3
kfaxview - 3.5.9-3+lenny3
kviewshell - 3.5.9-3+lenny3
kdvi - 3.5.9-3+lenny3
kpdf - 3.5.9-3+lenny3
kdegraphics-kfile-plugins - 3.5.9-3+lenny3
libkscan1 - 3.5.9-3+lenny3
kamera - 3.5.9-3+lenny3
kolourpaint - 3.5.9-3+lenny3
kghostview - 3.5.9-3+lenny3
kpovmodeler - 3.5.9-3+lenny3
kfax - 3.5.9-3+lenny3
kruler - 3.5.9-3+lenny3
libkscan-dev - 3.5.9-3+lenny3
kmrml - 3.5.9-3+lenny3
ksnapshot - 3.5.9-3+lenny3
ksvg - 3.5.9-3+lenny3
kcoloredit - 3.5.9-3+lenny3
x86-64:
kcoloredit - 3.5.9-3+lenny3
kdvi - 3.5.9-3+lenny3
libkscan1 - 3.5.9-3+lenny3
kruler - 3.5.9-3+lenny3
kview - 3.5.9-3+lenny3
kdegraphics-dev - 3.5.9-3+lenny3
kmrml - 3.5.9-3+lenny3
kdegraphics-kfile-plugins - 3.5.9-3+lenny3
kpdf - 3.5.9-3+lenny3
kghostview - 3.5.9-3+lenny3
kfaxview - 3.5.9-3+lenny3
ksnapshot - 3.5.9-3+lenny3
kfax - 3.5.9-3+lenny3
kgamma - 3.5.9-3+lenny3
libkscan-dev - 3.5.9-3+lenny3
kviewshell - 3.5.9-3+lenny3
kpovmodeler - 3.5.9-3+lenny3
kooka - 3.5.9-3+lenny3
kuickshow - 3.5.9-3+lenny3
kamera - 3.5.9-3+lenny3
kolourpaint - 3.5.9-3+lenny3
ksvg - 3.5.9-3+lenny3
kdegraphics-dbg - 3.5.9-3+lenny3
kiconedit - 3.5.9-3+lenny3
armel:
kviewshell - 3.5.9-3+lenny3
kuickshow - 3.5.9-3+lenny3
kdegraphics-dbg - 3.5.9-3+lenny3
ksnapshot - 3.5.9-3+lenny3
kolourpaint - 3.5.9-3+lenny3
kpdf - 3.5.9-3+lenny3
kdegraphics-kfile-plugins - 3.5.9-3+lenny3
kpovmodeler - 3.5.9-3+lenny3
kgamma - 3.5.9-3+lenny3
kamera - 3.5.9-3+lenny3
kmrml - 3.5.9-3+lenny3
kruler - 3.5.9-3+lenny3
kdegraphics-dev - 3.5.9-3+lenny3
kghostview - 3.5.9-3+lenny3
kfaxview - 3.5.9-3+lenny3
kooka - 3.5.9-3+lenny3
libkscan1 - 3.5.9-3+lenny3
kfax - 3.5.9-3+lenny3
kcoloredit - 3.5.9-3+lenny3
kview - 3.5.9-3+lenny3
ksvg - 3.5.9-3+lenny3
kdvi - 3.5.9-3+lenny3
libkscan-dev - 3.5.9-3+lenny3
kiconedit - 3.5.9-3+lenny3
alpha:
ksvg - 3.5.9-3+lenny3
kuickshow - 3.5.9-3+lenny3
kpovmodeler - 3.5.9-3+lenny3
kdegraphics-kfile-plugins - 3.5.9-3+lenny3
kruler - 3.5.9-3+lenny3
kfax - 3.5.9-3+lenny3
kolourpaint - 3.5.9-3+lenny3
kghostview - 3.5.9-3+lenny3
kfaxview - 3.5.9-3+lenny3
kview - 3.5.9-3+lenny3
kdvi - 3.5.9-3+lenny3
kcoloredit - 3.5.9-3+lenny3
kooka - 3.5.9-3+lenny3
kviewshell - 3.5.9-3+lenny3
libkscan-dev - 3.5.9-3+lenny3
kgamma - 3.5.9-3+lenny3
libkscan1 - 3.5.9-3+lenny3
ksnapshot - 3.5.9-3+lenny3
kmrml - 3.5.9-3+lenny3
kdegraphics-dbg - 3.5.9-3+lenny3
kiconedit - 3.5.9-3+lenny3
kamera - 3.5.9-3+lenny3
kpdf - 3.5.9-3+lenny3
kdegraphics-dev - 3.5.9-3+lenny3
ia64:
kmrml - 3.5.9-3+lenny3
kiconedit - 3.5.9-3+lenny3
kview - 3.5.9-3+lenny3
kooka - 3.5.9-3+lenny3
kdvi - 3.5.9-3+lenny3
kolourpaint - 3.5.9-3+lenny3
kpovmodeler - 3.5.9-3+lenny3
libkscan-dev - 3.5.9-3+lenny3
kdegraphics-dbg - 3.5.9-3+lenny3
ksvg - 3.5.9-3+lenny3
kfax - 3.5.9-3+lenny3
kcoloredit - 3.5.9-3+lenny3
kuickshow - 3.5.9-3+lenny3
kdegraphics-kfile-plugins - 3.5.9-3+lenny3
kpdf - 3.5.9-3+lenny3
kruler - 3.5.9-3+lenny3
kgamma - 3.5.9-3+lenny3
ksnapshot - 3.5.9-3+lenny3
kviewshell - 3.5.9-3+lenny3
kghostview - 3.5.9-3+lenny3
kfaxview - 3.5.9-3+lenny3
kdegraphics-dev - 3.5.9-3+lenny3
libkscan1 - 3.5.9-3+lenny3
kamera - 3.5.9-3+lenny3
mips:
kmrml - 3.5.9-3+lenny3
kpovmodeler - 3.5.9-3+lenny3
kpdf - 3.5.9-3+lenny3
kiconedit - 3.5.9-3+lenny3
kruler - 3.5.9-3+lenny3
kolourpaint - 3.5.9-3+lenny3
kooka - 3.5.9-3+lenny3
kviewshell - 3.5.9-3+lenny3
kghostview - 3.5.9-3+lenny3
kfaxview - 3.5.9-3+lenny3
kdegraphics-dev - 3.5.9-3+lenny3
libkscan1 - 3.5.9-3+lenny3
kcoloredit - 3.5.9-3+lenny3
ksnapshot - 3.5.9-3+lenny3
kview - 3.5.9-3+lenny3
libkscan-dev - 3.5.9-3+lenny3
kdvi - 3.5.9-3+lenny3
kamera - 3.5.9-3+lenny3
kdegraphics-kfile-plugins - 3.5.9-3+lenny3
kgamma - 3.5.9-3+lenny3
kdegraphics-dbg - 3.5.9-3+lenny3
kuickshow - 3.5.9-3+lenny3
ksvg - 3.5.9-3+lenny3
kfax - 3.5.9-3+lenny3
noarch:
kdegraphics - 3.5.9-3+lenny3
kdegraphics-doc-html - 3.5.9-3+lenny3
mipsel:
kfax - 3.5.9-3+lenny3
kpdf - 3.5.9-3+lenny3
ksnapshot - 3.5.9-3+lenny3
kview - 3.5.9-3+lenny3
kviewshell - 3.5.9-3+lenny3
kdegraphics-kfile-plugins - 3.5.9-3+lenny3
kpovmodeler - 3.5.9-3+lenny3
kooka - 3.5.9-3+lenny3
kuickshow - 3.5.9-3+lenny3
kruler - 3.5.9-3+lenny3
libkscan-dev - 3.5.9-3+lenny3
kmrml - 3.5.9-3+lenny3
kfaxview - 3.5.9-3+lenny3
kcoloredit - 3.5.9-3+lenny3
kgamma - 3.5.9-3+lenny3
kiconedit - 3.5.9-3+lenny3
kdegraphics-dev - 3.5.9-3+lenny3
kolourpaint - 3.5.9-3+lenny3
kghostview - 3.5.9-3+lenny3
kamera - 3.5.9-3+lenny3
ksvg - 3.5.9-3+lenny3
kdvi - 3.5.9-3+lenny3
libkscan1 - 3.5.9-3+lenny3
kdegraphics-dbg - 3.5.9-3+lenny3
arm:
kghostview - 3.5.9-3+lenny3
kiconedit - 3.5.9-3+lenny3
libkscan1 - 3.5.9-3+lenny3
kfax - 3.5.9-3+lenny3
ksvg - 3.5.9-3+lenny3
kmrml - 3.5.9-3+lenny3
kview - 3.5.9-3+lenny3
kdegraphics-dev - 3.5.9-3+lenny3
kooka - 3.5.9-3+lenny3
kpovmodeler - 3.5.9-3+lenny3
kolourpaint - 3.5.9-3+lenny3
kviewshell - 3.5.9-3+lenny3
kgamma - 3.5.9-3+lenny3
kfaxview - 3.5.9-3+lenny3
libkscan-dev - 3.5.9-3+lenny3
kdegraphics-dbg - 3.5.9-3+lenny3
ksnapshot - 3.5.9-3+lenny3
kcoloredit - 3.5.9-3+lenny3
kruler - 3.5.9-3+lenny3
kuickshow - 3.5.9-3+lenny3
kdegraphics-kfile-plugins - 3.5.9-3+lenny3
kamera - 3.5.9-3+lenny3
kdvi - 3.5.9-3+lenny3
kpdf - 3.5.9-3+lenny3

Статус уязвимости

Подтверждена производителем

Наличие эксплойта

Данные уточняются

Информация об устранении

Уязвимость устранена

EPSS

Процентиль: 90%
0.0622
Низкий

9.3 Critical

CVSS2

Связанные уязвимости

ubuntu
больше 15 лет назад

Integer overflow in the ObjectStream::ObjectStream function in XRef.cc in Xpdf 3.x before 3.02pl4 and Poppler before 0.12.1, as used in GPdf, kdegraphics KPDF, CUPS pdftops, and teTeX, might allow remote attackers to execute arbitrary code via a crafted PDF document that triggers a heap-based buffer overflow.

redhat
больше 15 лет назад

Integer overflow in the ObjectStream::ObjectStream function in XRef.cc in Xpdf 3.x before 3.02pl4 and Poppler before 0.12.1, as used in GPdf, kdegraphics KPDF, CUPS pdftops, and teTeX, might allow remote attackers to execute arbitrary code via a crafted PDF document that triggers a heap-based buffer overflow.

nvd
больше 15 лет назад

Integer overflow in the ObjectStream::ObjectStream function in XRef.cc in Xpdf 3.x before 3.02pl4 and Poppler before 0.12.1, as used in GPdf, kdegraphics KPDF, CUPS pdftops, and teTeX, might allow remote attackers to execute arbitrary code via a crafted PDF document that triggers a heap-based buffer overflow.

debian
больше 15 лет назад

Integer overflow in the ObjectStream::ObjectStream function in XRef.cc ...

github
около 3 лет назад

Integer overflow in the ObjectStream::ObjectStream function in XRef.cc in Xpdf 3.x before 3.02pl4 and Poppler before 0.12.1, as used in GPdf, kdegraphics KPDF, CUPS pdftops, and teTeX, might allow remote attackers to execute arbitrary code via a crafted PDF document that triggers a heap-based buffer overflow.

EPSS

Процентиль: 90%
0.0622
Низкий

9.3 Critical

CVSS2