Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2010-3702

Опубликовано: 24 сент. 2010
Источник: redhat
CVSS2: 5.8

Описание

The Gfx::getPos function in the PDF parser in xpdf before 3.02pl5, poppler 0.8.7 and possibly other versions up to 0.15.1, CUPS, kdegraphics, and possibly other products allows context-dependent attackers to cause a denial of service (crash) via unknown vectors that trigger an uninitialized pointer dereference.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 3tetexAffected
Red Hat Enterprise Linux 4tetexAffected
Red Hat Enterprise Linux 3xpdfFixedRHSA-2010:075007.10.2010
Red Hat Enterprise Linux 3cupsFixedRHSA-2010:075407.10.2010
Red Hat Enterprise Linux 4xpdfFixedRHSA-2010:075107.10.2010
Red Hat Enterprise Linux 4gpdfFixedRHSA-2010:075207.10.2010
Red Hat Enterprise Linux 4kdegraphicsFixedRHSA-2010:075307.10.2010
Red Hat Enterprise Linux 4cupsFixedRHSA-2010:075507.10.2010
Red Hat Enterprise Linux 5popplerFixedRHSA-2010:074907.10.2010
Red Hat Enterprise Linux 5kdegraphicsFixedRHSA-2010:075307.10.2010

Показывать по

Дополнительная информация

Статус:

Important
https://bugzilla.redhat.com/show_bug.cgi?id=595245xpdf: uninitialized Gfx::parser pointer dereference

5.8 Medium

CVSS2

Связанные уязвимости

ubuntu
больше 14 лет назад

The Gfx::getPos function in the PDF parser in xpdf before 3.02pl5, poppler 0.8.7 and possibly other versions up to 0.15.1, CUPS, kdegraphics, and possibly other products allows context-dependent attackers to cause a denial of service (crash) via unknown vectors that trigger an uninitialized pointer dereference.

nvd
больше 14 лет назад

The Gfx::getPos function in the PDF parser in xpdf before 3.02pl5, poppler 0.8.7 and possibly other versions up to 0.15.1, CUPS, kdegraphics, and possibly other products allows context-dependent attackers to cause a denial of service (crash) via unknown vectors that trigger an uninitialized pointer dereference.

debian
больше 14 лет назад

The Gfx::getPos function in the PDF parser in xpdf before 3.02pl5, pop ...

github
около 3 лет назад

The Gfx::getPos function in the PDF parser in xpdf before 3.02pl5, poppler 0.8.7 and possibly other versions up to 0.15.1, CUPS, kdegraphics, and possibly other products allows context-dependent attackers to cause a denial of service (crash) via unknown vectors that trigger an uninitialized pointer dereference.

fstec
больше 14 лет назад

Уязвимость операционной системы CentOS, позволяющая удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

5.8 Medium

CVSS2