Search CVE reports
31 – 40 of 49 results
CVE-2007-5392
Medium prioritySome fixes available 25 of 36
Integer overflow in the DCTStream::reset method in xpdf/Stream.cc in Xpdf 3.02p11 allows remote attackers to execute arbitrary code via a crafted PDF file, resulting in a heap-based buffer overflow.
13 affected packages
cups, cupsys, gpdf, ipe, kdegraphics...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
cups | — | — | — | — | — |
cupsys | — | — | — | — | — |
gpdf | — | — | — | — | — |
ipe | — | — | — | — | — |
kdegraphics | — | — | — | — | — |
koffice | — | — | — | — | — |
libextractor | — | — | — | — | — |
pdfkit.framework | — | — | — | — | — |
pdftohtml | — | — | — | — | — |
poppler | — | — | — | — | — |
tetex-bin | — | — | — | — | — |
texlive-bin | — | — | — | — | — |
xpdf | — | — | — | — | — |
CVE-2007-4352
Medium prioritySome fixes available 25 of 36
Array index error in the DCTStream::readProgressiveDataUnit method in xpdf/Stream.cc in Xpdf 3.02pl1, as used in poppler, teTeX, KDE, KOffice, CUPS, and other products, allows remote attackers to trigger memory corruption and...
13 affected packages
cups, cupsys, gpdf, ipe, kdegraphics...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
cups | — | — | — | — | — |
cupsys | — | — | — | — | — |
gpdf | — | — | — | — | — |
ipe | — | — | — | — | — |
kdegraphics | — | — | — | — | — |
koffice | — | — | — | — | — |
libextractor | — | — | — | — | — |
pdfkit.framework | — | — | — | — | — |
pdftohtml | — | — | — | — | — |
poppler | — | — | — | — | — |
tetex-bin | — | — | — | — | — |
texlive-bin | — | — | — | — | — |
xpdf | — | — | — | — | — |
CVE-2007-3387
Unknown prioritySome fixes available 21 of 24
Integer overflow in the StreamPredictor::StreamPredictor function in xpdf 3.02, as used in (1) poppler before 0.5.91, (2) gpdf before 2.8.2, (3) kpdf, (4) kdegraphics, (5) CUPS, (6) PDFedit, and other products, might allow remote...
4 affected packages
kdegraphics, koffice, poppler, xpdf
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
kdegraphics | — | — | — | — | — |
koffice | — | — | — | — | — |
poppler | — | — | — | — | — |
xpdf | — | — | — | — | — |
CVE-2007-0104
Unknown priorityThe Adobe PDF specification 1.3, as implemented by (a) xpdf 3.0.1 patch 2, (b) kpdf in KDE before 3.5.5, (c) poppler before 0.5.4, and other products, allows remote attackers to have an unknown impact, possibly including denial of...
5 affected packages
kdegraphics, koffice, poppler, tetex-bin, xpdf
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
kdegraphics | — | — | — | — | — |
koffice | — | — | — | — | — |
poppler | — | — | — | — | — |
tetex-bin | — | — | — | — | — |
xpdf | — | — | — | — | — |
CVE-2006-6120
Unknown priorityInteger overflow in the KPresenter import filter for Microsoft PowerPoint files (filters/olefilters/lib/klaola.cc) in KOffice before 1.6.1 allows user-assisted remote attackers to execute arbitrary code via a crafted PPT file,...
1 affected packages
koffice
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
koffice | — | — | — | — | — |
CVE-2006-1244
Unknown prioritySome fixes available 4 of 5
Unspecified vulnerability in certain versions of xpdf after 3.00, as used in various products including (a) pdfkit.framework, (b) gpdf, (c) pdftohtml, and (d) libextractor, has unknown impact and user-assisted attack vectors,...
6 affected packages
cupsys, gpdf, kdegraphics, koffice, poppler, tetex-bin
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
cupsys | — | — | — | — | — |
gpdf | — | — | — | — | — |
kdegraphics | — | — | — | — | — |
koffice | — | — | — | — | — |
poppler | — | — | — | — | — |
tetex-bin | — | — | — | — | — |
CVE-2005-3628
Unknown priorityBuffer overflow in the JBIG2Bitmap::JBIG2Bitmap function in JBIG2Stream.cc in Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to modify memory and possibly...
3 affected packages
gpdf, kdegraphics, koffice
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
gpdf | — | — | — | — | — |
kdegraphics | — | — | — | — | — |
koffice | — | — | — | — | — |
CVE-2005-3627
Unknown priorityStream.cc in Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to modify memory and possibly execute arbitrary code via a DCTDecode stream with (1) a large...
6 affected packages
cupsys, gpdf, kdegraphics, koffice, poppler, tetex-bin
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
cupsys | — | — | — | — | — |
gpdf | — | — | — | — | — |
kdegraphics | — | — | — | — | — |
koffice | — | — | — | — | — |
poppler | — | — | — | — | — |
tetex-bin | — | — | — | — | — |
CVE-2005-3626
Unknown priorityXpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial of service (crash) via a crafted FlateDecode stream that triggers a null dereference.
3 affected packages
gpdf, kdegraphics, koffice
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
gpdf | — | — | — | — | — |
kdegraphics | — | — | — | — | — |
koffice | — | — | — | — | — |
CVE-2005-3625
Unknown priorityXpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial of service (infinite loop) via streams that end prematurely, as demonstrated using the (1)...
6 affected packages
cupsys, gpdf, kdegraphics, koffice, poppler, tetex-bin
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
cupsys | — | — | — | — | — |
gpdf | — | — | — | — | — |
kdegraphics | — | — | — | — | — |
koffice | — | — | — | — | — |
poppler | — | — | — | — | — |
tetex-bin | — | — | — | — | — |