Π›ΠΎΠ³ΠΎΡ‚ΠΈΠΏ exploitDog
Консоль
Π›ΠΎΠ³ΠΎΡ‚ΠΈΠΏ exploitDog

exploitDog

ubuntu Π»ΠΎΠ³ΠΎΡ‚ΠΈΠΏ

CVE-2007-5392

ΠžΠΏΡƒΠ±Π»ΠΈΠΊΠΎΠ²Π°Π½ΠΎ: 08 нояб. 2007
Π˜ΡΡ‚ΠΎΡ‡Π½ΠΈΠΊ: ubuntu
ΠŸΡ€ΠΈΠΎΡ€ΠΈΡ‚Π΅Ρ‚: medium
EPSS Низкий
CVSS2: 9.3

ОписаниС

Integer overflow in the DCTStream::reset method in xpdf/Stream.cc in Xpdf 3.02p11 allows remote attackers to execute arbitrary code via a crafted PDF file, resulting in a heap-based buffer overflow.

Π Π΅Π»ΠΈΠ·Π‘Ρ‚Π°Ρ‚ΡƒΡΠŸΡ€ΠΈΠΌΠ΅Ρ‡Π°Π½ΠΈΠ΅
dapper

DNE

devel

not-affected

edgy

DNE

feisty

DNE

gutsy

DNE

hardy

DNE

intrepid

not-affected

jaunty

not-affected

karmic

not-affected

upstream

needs-triage

ΠŸΠΎΠΊΠ°Π·Ρ‹Π²Π°Ρ‚ΡŒ ΠΏΠΎ

Π Π΅Π»ΠΈΠ·Π‘Ρ‚Π°Ρ‚ΡƒΡΠŸΡ€ΠΈΠΌΠ΅Ρ‡Π°Π½ΠΈΠ΅
dapper

not-affected

devel

DNE

edgy

not-affected

feisty

not-affected

gutsy

not-affected

hardy

not-affected

intrepid

DNE

jaunty

DNE

karmic

DNE

upstream

needs-triage

ΠŸΠΎΠΊΠ°Π·Ρ‹Π²Π°Ρ‚ΡŒ ΠΏΠΎ

Π Π΅Π»ΠΈΠ·Π‘Ρ‚Π°Ρ‚ΡƒΡΠŸΡ€ΠΈΠΌΠ΅Ρ‡Π°Π½ΠΈΠ΅
dapper

ignored

end of life
devel

DNE

edgy

ignored

end of life, was needed
feisty

DNE

gutsy

DNE

hardy

DNE

intrepid

DNE

jaunty

DNE

karmic

DNE

upstream

needs-triage

ΠŸΠΎΠΊΠ°Π·Ρ‹Π²Π°Ρ‚ΡŒ ΠΏΠΎ

Π Π΅Π»ΠΈΠ·Π‘Ρ‚Π°Ρ‚ΡƒΡΠŸΡ€ΠΈΠΌΠ΅Ρ‡Π°Π½ΠΈΠ΅
dapper

not-affected

devel

not-affected

edgy

not-affected

feisty

not-affected

gutsy

not-affected

hardy

not-affected

intrepid

not-affected

jaunty

not-affected

karmic

not-affected

upstream

not-affected

ΠŸΠΎΠΊΠ°Π·Ρ‹Π²Π°Ρ‚ΡŒ ΠΏΠΎ

Π Π΅Π»ΠΈΠ·Π‘Ρ‚Π°Ρ‚ΡƒΡΠŸΡ€ΠΈΠΌΠ΅Ρ‡Π°Π½ΠΈΠ΅
dapper

not-affected

linked to poppler
devel

not-affected

linked to poppler
edgy

not-affected

linked to poppler
feisty

not-affected

linked to poppler
gutsy

not-affected

linked to poppler
hardy

not-affected

linked to poppler
intrepid

not-affected

linked to poppler
jaunty

not-affected

linked to poppler
karmic

not-affected

linked to poppler
upstream

needs-triage

ΠŸΠΎΠΊΠ°Π·Ρ‹Π²Π°Ρ‚ΡŒ ΠΏΠΎ

Π Π΅Π»ΠΈΠ·Π‘Ρ‚Π°Ρ‚ΡƒΡΠŸΡ€ΠΈΠΌΠ΅Ρ‡Π°Π½ΠΈΠ΅
dapper

released

1:1.5.0-0ubuntu9.3
devel

released

1:1.6.3-4
edgy

released

1:1.5.2-0ubuntu2.3
feisty

released

1:1.6.2-0ubuntu1.2
gutsy

released

1:1.6.3-0ubuntu5.1
hardy

released

1:1.6.3-4
intrepid

released

1:1.6.3-4
jaunty

released

1:1.6.3-4
karmic

released

1:1.6.3-4
upstream

needed

ΠŸΠΎΠΊΠ°Π·Ρ‹Π²Π°Ρ‚ΡŒ ΠΏΠΎ

Π Π΅Π»ΠΈΠ·Π‘Ρ‚Π°Ρ‚ΡƒΡΠŸΡ€ΠΈΠΌΠ΅Ρ‡Π°Π½ΠΈΠ΅
dapper

released

0.5.12-1
devel

released

0.5.12-1
edgy

released

0.5.12-1
feisty

released

0.5.12-1
gutsy

released

0.5.12-1
hardy

released

0.5.12-1
intrepid

released

0.5.12-1
jaunty

released

0.5.12-1
karmic

released

0.5.12-1
upstream

needs-triage

ΠŸΠΎΠΊΠ°Π·Ρ‹Π²Π°Ρ‚ΡŒ ΠΏΠΎ

Π Π΅Π»ΠΈΠ·Π‘Ρ‚Π°Ρ‚ΡƒΡΠŸΡ€ΠΈΠΌΠ΅Ρ‡Π°Π½ΠΈΠ΅
dapper

ignored

end of life
devel

DNE

edgy

ignored

end of life, was needed
feisty

ignored

end of life, was needed
gutsy

DNE

hardy

DNE

intrepid

DNE

jaunty

DNE

karmic

DNE

upstream

needs-triage

ΠŸΠΎΠΊΠ°Π·Ρ‹Π²Π°Ρ‚ΡŒ ΠΏΠΎ

Π Π΅Π»ΠΈΠ·Π‘Ρ‚Π°Ρ‚ΡƒΡΠŸΡ€ΠΈΠΌΠ΅Ρ‡Π°Π½ΠΈΠ΅
dapper

ignored

end of life
devel

DNE

edgy

ignored

end of life, was needed
feisty

ignored

end of life, was needed
gutsy

DNE

hardy

DNE

intrepid

DNE

jaunty

DNE

karmic

DNE

upstream

needs-triage

ΠŸΠΎΠΊΠ°Π·Ρ‹Π²Π°Ρ‚ΡŒ ΠΏΠΎ

Π Π΅Π»ΠΈΠ·Π‘Ρ‚Π°Ρ‚ΡƒΡΠŸΡ€ΠΈΠΌΠ΅Ρ‡Π°Π½ΠΈΠ΅
dapper

released

0.5.1-0ubuntu7.3
devel

released

0.6.2-1
edgy

released

0.5.4-0ubuntu4.3
feisty

released

0.5.4-0ubuntu8.2
gutsy

released

0.6-0ubuntu2.1
hardy

released

0.6.2-1
intrepid

released

0.6.2-1
jaunty

released

0.6.2-1
karmic

released

0.6.2-1
upstream

released

0.6.2

ΠŸΠΎΠΊΠ°Π·Ρ‹Π²Π°Ρ‚ΡŒ ΠΏΠΎ

Π Π΅Π»ΠΈΠ·Π‘Ρ‚Π°Ρ‚ΡƒΡΠŸΡ€ΠΈΠΌΠ΅Ρ‡Π°Π½ΠΈΠ΅
dapper

not-affected

linked to poppler
devel

DNE

edgy

not-affected

linked to poppler
feisty

not-affected

linked to poppler
gutsy

DNE

hardy

DNE

intrepid

DNE

jaunty

DNE

karmic

DNE

upstream

needs-triage

ΠŸΠΎΠΊΠ°Π·Ρ‹Π²Π°Ρ‚ΡŒ ΠΏΠΎ

Π Π΅Π»ΠΈΠ·Π‘Ρ‚Π°Ρ‚ΡƒΡΠŸΡ€ΠΈΠΌΠ΅Ρ‡Π°Π½ΠΈΠ΅
dapper

DNE

devel

not-affected

linked to poppler
edgy

not-affected

linked to poppler
feisty

not-affected

linked to poppler
gutsy

not-affected

linked to poppler
hardy

not-affected

linked to poppler
intrepid

not-affected

linked to poppler
jaunty

not-affected

linked to poppler
karmic

not-affected

linked to poppler
upstream

needs-triage

ΠŸΠΎΠΊΠ°Π·Ρ‹Π²Π°Ρ‚ΡŒ ΠΏΠΎ

Π Π΅Π»ΠΈΠ·Π‘Ρ‚Π°Ρ‚ΡƒΡΠŸΡ€ΠΈΠΌΠ΅Ρ‡Π°Π½ΠΈΠ΅
dapper

ignored

end of life
devel

not-affected

3.02-1.3ubuntu1
edgy

ignored

end of life, was needed
feisty

ignored

end of life, was needed
gutsy

released

3.02-1.2ubuntu1.1
hardy

not-affected

3.02-1.3ubuntu1
intrepid

not-affected

3.02-1.3ubuntu1
jaunty

not-affected

3.02-1.3ubuntu1
karmic

not-affected

3.02-1.3ubuntu1
upstream

released

3.02pl2

ΠŸΠΎΠΊΠ°Π·Ρ‹Π²Π°Ρ‚ΡŒ ΠΏΠΎ

EPSS

ΠŸΡ€ΠΎΡ†Π΅Π½Ρ‚ΠΈΠ»ΡŒ: 88%
0.03924
Низкий

9.3 Critical

CVSS2

БвязанныС уязвимости

redhat
ΠΏΠΎΡ‡Ρ‚ΠΈ 18 Π»Π΅Ρ‚ Π½Π°Π·Π°Π΄

Integer overflow in the DCTStream::reset method in xpdf/Stream.cc in Xpdf 3.02p11 allows remote attackers to execute arbitrary code via a crafted PDF file, resulting in a heap-based buffer overflow.

nvd
ΠΏΠΎΡ‡Ρ‚ΠΈ 18 Π»Π΅Ρ‚ Π½Π°Π·Π°Π΄

Integer overflow in the DCTStream::reset method in xpdf/Stream.cc in Xpdf 3.02p11 allows remote attackers to execute arbitrary code via a crafted PDF file, resulting in a heap-based buffer overflow.

debian
ΠΏΠΎΡ‡Ρ‚ΠΈ 18 Π»Π΅Ρ‚ Π½Π°Π·Π°Π΄

Integer overflow in the DCTStream::reset method in xpdf/Stream.cc in X ...

github
большС 3 Π»Π΅Ρ‚ Π½Π°Π·Π°Π΄

Integer overflow in the DCTStream::reset method in xpdf/Stream.cc in Xpdf 3.02p11 allows remote attackers to execute arbitrary code via a crafted PDF file, resulting in a heap-based buffer overflow.

oracle-oval
ΠΏΠΎΡ‡Ρ‚ΠΈ 18 Π»Π΅Ρ‚ Π½Π°Π·Π°Π΄

ELSA-2007-1026: Important: poppler security update (IMPORTANT)

EPSS

ΠŸΡ€ΠΎΡ†Π΅Π½Ρ‚ΠΈΠ»ΡŒ: 88%
0.03924
Низкий

9.3 Critical

CVSS2

Π£ΡΠ·Π²ΠΈΠΌΠΎΡΡ‚ΡŒ CVE-2007-5392