Search CVE reports


Toggle filters

21 – 25 of 25 results


CVE-2009-0799

Medium priority

Some fixes available 35 of 78

The JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, and other products allows remote attackers to cause a denial of service (crash) via a crafted PDF file that triggers an out-of-bounds read.

14 affected packages

xpdf, cups, cupsys, evince, gpdf...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
xpdf Not affected Not in release Not affected
cups Not affected Not affected Not affected
cupsys Not in release Not in release Not in release
evince Not affected Not affected Not affected
gpdf Not in release Not in release Not in release
ipe Not affected Not affected Not affected
kdegraphics Not in release Not in release Not in release
koffice Not in release Not in release Not in release
pdfkit.framework Not in release Not in release Not in release
pdftohtml Not in release Not in release Not in release
poppler Fixed Fixed Fixed
tetex-bin Not in release Not in release Not in release
texlive-bin Not affected Not affected Not affected
libextractor Not affected Not affected Not affected
Show all 14 packages Show less packages

CVE-2009-0166

Medium priority

Some fixes available 35 of 78

The JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, and other products allows remote attackers to cause a denial of service (crash) via a crafted PDF file that triggers a free of uninitialized memory.

14 affected packages

kdegraphics, gpdf, cups, cupsys, evince...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
kdegraphics Not in release Not in release Not in release
gpdf Not in release Not in release Not in release
cups Not affected Not affected Not affected
cupsys Not in release Not in release Not in release
evince Not affected Not affected Not affected
ipe Not affected Not affected Not affected
koffice Not in release Not in release Not in release
libextractor Not affected Not affected Not affected
pdfkit.framework Not in release Not in release Not in release
pdftohtml Not in release Not in release Not in release
poppler Fixed Fixed Fixed
tetex-bin Not in release Not in release Not in release
texlive-bin Not affected Not affected Not affected
xpdf Not affected Not in release Not affected
Show all 14 packages Show less packages

CVE-2009-0147

Medium priority

Some fixes available 21 of 58

Multiple integer overflows in the JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, and other products allow remote attackers to cause a denial of service (crash) via a crafted PDF file, related to...

14 affected packages

gpdf, cups, cupsys, evince, ipe...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gpdf
cups
cupsys
evince
ipe
kdegraphics
koffice
libextractor
pdfkit.framework
pdftohtml
poppler
tetex-bin
texlive-bin
xpdf
Show all 14 packages Show less packages

CVE-2009-0146

Medium priority

Some fixes available 21 of 51

Multiple buffer overflows in the JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, and other products allow remote attackers to cause a denial of service (crash) via a crafted PDF file, related to...

14 affected packages

gpdf, evince, poppler, texlive-bin, xpdf...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gpdf
evince
poppler
texlive-bin
xpdf
cups
cupsys
ipe
kdegraphics
koffice
libextractor
pdfkit.framework
pdftohtml
tetex-bin
Show all 14 packages Show less packages

CVE-2006-5864

Medium priority
Fixed

Stack-based buffer overflow in the ps_gettext function in ps.c for GNU gv 3.6.2, and possibly earlier versions, allows user-assisted attackers to execute arbitrary code via a PostScript (PS) file with certain headers that contain...

3 affected packages

evince, evince-gtk, gv

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
evince
evince-gtk
gv
Show less packages