CVE-2009-0147
23.04.2009, 17:30
Multiple integer overflows in the JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, and other products allow remote attackers to cause a denial of service (crash) via a crafted PDF file, related to (1) JBIG2Stream::readSymbolDictSeg, (2) JBIG2Stream::readSymbolDictSeg, and (3) JBIG2Stream::readGenericBitmap.Enginsight
| Vendor | Product | Version |
|---|---|---|
| foolabs | xpdf | 0.5a:a |
| foolabs | xpdf | 0.7a:a |
| foolabs | xpdf | 0.91a:a |
| foolabs | xpdf | 0.91b:b |
| foolabs | xpdf | 0.91c:c |
| foolabs | xpdf | 0.92a:a |
| foolabs | xpdf | 0.92b:b |
| foolabs | xpdf | 0.92c:c |
| foolabs | xpdf | 0.92d:d |
| foolabs | xpdf | 0.92e:e |
| foolabs | xpdf | 0.93a:a |
| foolabs | xpdf | 0.93b:b |
| foolabs | xpdf | 0.93c:c |
| foolabs | xpdf | 1.00a:a |
| glyphandcog | xpdfreader | 𝑥 ≤ 3.02 |
| glyphandcog | xpdfreader | 0.2 |
| glyphandcog | xpdfreader | 0.3 |
| glyphandcog | xpdfreader | 0.4 |
| glyphandcog | xpdfreader | 0.5 |
| glyphandcog | xpdfreader | 0.6 |
| glyphandcog | xpdfreader | 0.7 |
| glyphandcog | xpdfreader | 0.80 |
| glyphandcog | xpdfreader | 0.90 |
| glyphandcog | xpdfreader | 0.91 |
| glyphandcog | xpdfreader | 0.92 |
| glyphandcog | xpdfreader | 0.93 |
| glyphandcog | xpdfreader | 1.00 |
| glyphandcog | xpdfreader | 1.01 |
| glyphandcog | xpdfreader | 2.00 |
| glyphandcog | xpdfreader | 2.01 |
| glyphandcog | xpdfreader | 2.02 |
| glyphandcog | xpdfreader | 2.03 |
| glyphandcog | xpdfreader | 3.00 |
| glyphandcog | xpdfreader | 3.01 |
| apple | cups | 𝑥 ≤ 1.3.9 |
| apple | cups | 1.1 |
| apple | cups | 1.1.1 |
| apple | cups | 1.1.2 |
| apple | cups | 1.1.3 |
| apple | cups | 1.1.4 |
| apple | cups | 1.1.5 |
| apple | cups | 1.1.5-1 |
| apple | cups | 1.1.5-2 |
| apple | cups | 1.1.6 |
| apple | cups | 1.1.6-1 |
| apple | cups | 1.1.6-2 |
| apple | cups | 1.1.6-3 |
| apple | cups | 1.1.7 |
| apple | cups | 1.1.8 |
| apple | cups | 1.1.9 |
| apple | cups | 1.1.9-1 |
| apple | cups | 1.1.10 |
| apple | cups | 1.1.10-1 |
| apple | cups | 1.1.11 |
| apple | cups | 1.1.12 |
| apple | cups | 1.1.13 |
| apple | cups | 1.1.14 |
| apple | cups | 1.1.15 |
| apple | cups | 1.1.16 |
| apple | cups | 1.1.17 |
| apple | cups | 1.1.18 |
| apple | cups | 1.1.19 |
| apple | cups | 1.1.19:rc1 |
| apple | cups | 1.1.19:rc2 |
| apple | cups | 1.1.19:rc3 |
| apple | cups | 1.1.19:rc4 |
| apple | cups | 1.1.19:rc5 |
| apple | cups | 1.1.20 |
| apple | cups | 1.1.20:rc1 |
| apple | cups | 1.1.20:rc2 |
| apple | cups | 1.1.20:rc3 |
| apple | cups | 1.1.20:rc4 |
| apple | cups | 1.1.20:rc5 |
| apple | cups | 1.1.20:rc6 |
| apple | cups | 1.1.21 |
| apple | cups | 1.1.21:rc1 |
| apple | cups | 1.1.21:rc2 |
| apple | cups | 1.1.22 |
| apple | cups | 1.1.22:rc1 |
| apple | cups | 1.1.22:rc2 |
| apple | cups | 1.1.23 |
| apple | cups | 1.1.23:rc1 |
| apple | cups | 1.2.0 |
| apple | cups | 1.2.1 |
| apple | cups | 1.2.2 |
| apple | cups | 1.2.3 |
| apple | cups | 1.2.4 |
| apple | cups | 1.2.5 |
| apple | cups | 1.2.6 |
| apple | cups | 1.2.7 |
| apple | cups | 1.2.8 |
| apple | cups | 1.2.9 |
| apple | cups | 1.2.10 |
| apple | cups | 1.2.11 |
| apple | cups | 1.2.12 |
| apple | cups | 1.3.0 |
| apple | cups | 1.3.1 |
| apple | cups | 1.3.2 |
| apple | cups | 1.3.3 |
| apple | cups | 1.3.4 |
| apple | cups | 1.3.5 |
| apple | cups | 1.3.6 |
| apple | cups | 1.3.7 |
| apple | cups | 1.3.8 |
| apple | cups | 1.3.10 |
| apple | cups | 1.3.11 |
𝑥
= Vulnerable software versions
Debian Releases
Debian Product | |||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| cups |
| ||||||||||||
| poppler |
| ||||||||||||
| xpdf |
|
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| cups |
| ||||||||||||||||||||||||||||||||||||||
| cupsys |
| ||||||||||||||||||||||||||||||||||||||
| evince |
| ||||||||||||||||||||||||||||||||||||||
| gpdf |
| ||||||||||||||||||||||||||||||||||||||
| ipe |
| ||||||||||||||||||||||||||||||||||||||
| kdegraphics |
| ||||||||||||||||||||||||||||||||||||||
| koffice |
| ||||||||||||||||||||||||||||||||||||||
| libextractor |
| ||||||||||||||||||||||||||||||||||||||
| pdfkit.framework |
| ||||||||||||||||||||||||||||||||||||||
| pdftohtml |
| ||||||||||||||||||||||||||||||||||||||
| poppler |
| ||||||||||||||||||||||||||||||||||||||
| tetex-bin |
| ||||||||||||||||||||||||||||||||||||||
| texlive-bin |
| ||||||||||||||||||||||||||||||||||||||
| xpdf |
|
Common Weakness Enumeration
References