CVE-2019-9589
06.03.2019, 08:29
There is a NULL pointer dereference vulnerability in PSOutputDev::setupResources() located in PSOutputDev.cc in Xpdf 4.01. It can be triggered by sending a crafted pdf file to (for example) the pdftops binary. It allows an attacker to cause Denial of Service (Segmentation fault) or possibly have unspecified other impact.Enginsight
Vendor | Product | Version |
---|---|---|
glyphandcog | xpdfreader | 4.01 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
ipe |
| ||||||||||||||||||||||||||
libextractor |
| ||||||||||||||||||||||||||
poppler |
| ||||||||||||||||||||||||||
texlive-bin |
| ||||||||||||||||||||||||||
utopia-documents |
| ||||||||||||||||||||||||||
xpdf |
|
Common Weakness Enumeration
References