CVE-2009-1144
09.04.2009, 15:08
Untrusted search path vulnerability in the Gentoo package of Xpdf before 3.02-r2 allows local users to gain privileges via a Trojan horse xpdfrc file in the current working directory, related to an unset SYSTEM_XPDFRC macro in a Gentoo build process that uses the poppler library.
| Vendor | Product | Version |
|---|---|---|
| foolabs | xpdf | 0.5a:a |
| foolabs | xpdf | 0.7a:a |
| foolabs | xpdf | 0.91a:a |
| foolabs | xpdf | 0.91b:b |
| foolabs | xpdf | 0.91c:c |
| foolabs | xpdf | 0.92a:a |
| foolabs | xpdf | 0.92b:b |
| foolabs | xpdf | 0.92c:c |
| foolabs | xpdf | 0.92d:d |
| foolabs | xpdf | 0.92e:e |
| foolabs | xpdf | 0.93a:a |
| foolabs | xpdf | 0.93b:b |
| foolabs | xpdf | 0.93c:c |
| foolabs | xpdf | 1.00a:a |
| glyphandcog | xpdfreader | 𝑥 ≤ 3.02 |
| glyphandcog | xpdfreader | 0.2 |
| glyphandcog | xpdfreader | 0.3 |
| glyphandcog | xpdfreader | 0.4 |
| glyphandcog | xpdfreader | 0.5 |
| glyphandcog | xpdfreader | 0.6 |
| glyphandcog | xpdfreader | 0.7 |
| glyphandcog | xpdfreader | 0.80 |
| glyphandcog | xpdfreader | 0.90 |
| glyphandcog | xpdfreader | 0.91 |
| glyphandcog | xpdfreader | 0.93 |
| glyphandcog | xpdfreader | 1.00 |
| glyphandcog | xpdfreader | 1.01 |
| glyphandcog | xpdfreader | 2.00 |
| glyphandcog | xpdfreader | 2.01 |
| glyphandcog | xpdfreader | 2.02 |
| glyphandcog | xpdfreader | 2.03 |
| glyphandcog | xpdfreader | 3.00 |
𝑥
= Vulnerable software versions
Debian Releases
References