Vulnerability index

Browse CVEs

14 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Xpdf HIGH 9.3
CVE-2007-5392EPSS 6%

Integer overflow in the DCTStream::reset method in xpdf/Stream.cc in Xpdf 3.02p11 allows remote attackers to execute arbitrary code via a crafted PDF…

Patch available
Fix from $1,950 2007-11-08
Xpdf HIGH 9.3
CVE-2007-5393EPSS 6%

Heap-based buffer overflow in the CCITTFaxStream::lookChar method in xpdf/Stream.cc in Xpdf 3.02p11 allows remote attackers to execute arbitrary code…

Patch available
Fix from $1,950 2007-11-08
Xpdf HIGH 7.6
CVE-2007-4352EPSS 7%

Array index error in the DCTStream::readProgressiveDataUnit method in xpdf/Stream.cc in Xpdf 3.02pl1, as used in poppler, teTeX, KDE, KOffice, CUPS, …

Patch available
Fix from $1,950 2007-11-08
Xpdf MEDIUM 6.8
CVE-2007-0104EPSS 6%

The Adobe PDF specification 1.3, as implemented by (a) xpdf 3.0.1 patch 2, (b) kpdf in KDE before 3.5.5, (c) poppler before 0.5.4, and other products…

No fix yet
Fix from $1,600 2007-01-09
Xpdf HIGH 7.5
CVE-2006-0746

Certain patches for kpdf do not include all relevant patches from xpdf that were associated with CVE-2005-3627, which allows context-dependent attack…

Mitigation only
Fix from $1,950 2006-03-09
Xpdf HIGH 7.5
CVE-2006-0301

Heap-based buffer overflow in Splash.cc in xpdf, as used in other products such as (1) poppler, (2) kdegraphics, (3) gpdf, (4) pdfkit.framework, and …

Patch available
Fix from $1,950 2006-01-30
Xpdf HIGH 7.5
CVE-2005-3627EPSS 6%

Stream.cc in Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to modify memo…

Patch available
Fix from $1,950 2005-12-31
Xpdf HIGH 7.5
CVE-2005-3628

Buffer overflow in the JBIG2Bitmap::JBIG2Bitmap function in JBIG2Stream.cc in Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX…

Patch available
Fix from $1,950 2005-12-31
Xpdf HIGH 7.5
CVE-2005-3192EPSS 6%

Heap-based buffer overflow in the StreamPredictor function in Xpdf 3.01, as used in products such as (1) Poppler, (2) teTeX, (3) KDE kpdf, and (4) pd…

Patch available
Fix from $1,950 2005-12-08
Xpdf MEDIUM 5.1
CVE-2005-3191

Multiple heap-based buffer overflows in the (1) DCTStream::readProgressiveSOF and (2) DCTStream::readBaselineSOF functions in the DCT stream parsing …

Patch available
Fix from $1,600 2005-12-07
Xpdf MEDIUM 5.1
CVE-2005-3193

Heap-based buffer overflow in the JPXStream::readCodestream function in the JPX stream parsing code (JPXStream.c) for xpdf 3.01 and earlier, as used …

Patch available
Fix from $1,600 2005-12-07
Xpdf HIGH 7.5
CVE-2005-0064EPSS 7%

Buffer overflow in the Decrypt::makeFileKey2 function in Decrypt.cc for xpdf 3.00 and earlier allows remote attackers to execute arbitrary code via a…

Patch available
Fix from $1,950 2005-05-02
Xpdf HIGH 7.6
CVE-2000-0727

xpdf PDF viewer client earlier than 0.91 does not properly launch a web browser for embedded URL's, which allows an attacker to execute arbitrary com…

Patch available
Fix from $1,950 2000-10-20
Xpdf HIGH 7.2
CVE-2000-0728

xpdf PDF viewer client earlier than 0.91 allows local users to overwrite arbitrary files via a symlink attack.

Patch available
Fix from $1,950 2000-10-20