Описание
The FoFiType1::parse function in fofi/FoFiType1.cc in the PDF parser in xpdf before 3.02pl5, poppler 0.8.7 and possibly other versions up to 0.15.1, kdegraphics, and possibly other products allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via a PDF file with a crafted PostScript Type1 font that contains a negative array index, which bypasses input validation and triggers memory corruption.
Затронутые пакеты
Платформа | Пакет | Состояние | Рекомендация | Релиз |
---|---|---|---|---|
Red Hat Enterprise Linux 3 | xpdf | Not affected | ||
Red Hat Enterprise Linux 4 | cups | Not affected | ||
Red Hat Enterprise Linux 4 | tetex | Not affected | ||
Red Hat Enterprise Linux 4 | xpdf | Fixed | RHSA-2010:0751 | 07.10.2010 |
Red Hat Enterprise Linux 4 | gpdf | Fixed | RHSA-2010:0752 | 07.10.2010 |
Red Hat Enterprise Linux 4 | kdegraphics | Fixed | RHSA-2010:0753 | 07.10.2010 |
Red Hat Enterprise Linux 5 | poppler | Fixed | RHSA-2010:0749 | 07.10.2010 |
Red Hat Enterprise Linux 5 | kdegraphics | Fixed | RHSA-2010:0753 | 07.10.2010 |
Red Hat Enterprise Linux 5 | tetex | Fixed | RHSA-2012:1201 | 23.08.2012 |
Red Hat Enterprise Linux 6 | poppler | Fixed | RHSA-2010:0859 | 10.11.2010 |
Показывать по
Дополнительная информация
Статус:
6.8 Medium
CVSS2
Связанные уязвимости
The FoFiType1::parse function in fofi/FoFiType1.cc in the PDF parser in xpdf before 3.02pl5, poppler 0.8.7 and possibly other versions up to 0.15.1, kdegraphics, and possibly other products allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via a PDF file with a crafted PostScript Type1 font that contains a negative array index, which bypasses input validation and triggers memory corruption.
The FoFiType1::parse function in fofi/FoFiType1.cc in the PDF parser in xpdf before 3.02pl5, poppler 0.8.7 and possibly other versions up to 0.15.1, kdegraphics, and possibly other products allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via a PDF file with a crafted PostScript Type1 font that contains a negative array index, which bypasses input validation and triggers memory corruption.
The FoFiType1::parse function in fofi/FoFiType1.cc in the PDF parser i ...
The FoFiType1::parse function in fofi/FoFiType1.cc in the PDF parser in xpdf before 3.02pl5, poppler 0.8.7 and possibly other versions up to 0.15.1, kdegraphics, and possibly other products allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via a PDF file with a crafted PostScript Type1 font that contains a negative array index, which bypasses input validation and triggers memory corruption.
6.8 Medium
CVSS2