7.2

CVE-2002-1384

Exploit

Integer overflow in pdftops, as used in Xpdf 2.01 and earlier, xpdf-i, and CUPS before 1.1.18, allows local users to execute arbitrary code via a ColorSpace entry with a large number of elements, as demonstrated by cups-pdf.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Easy Software ProductsCups Version1.0.4
Easy Software ProductsCups Version1.0.4_8
Easy Software ProductsCups Version1.1.1
Easy Software ProductsCups Version1.1.4
Easy Software ProductsCups Version1.1.4_2
Easy Software ProductsCups Version1.1.4_3
Easy Software ProductsCups Version1.1.4_5
Easy Software ProductsCups Version1.1.6
Easy Software ProductsCups Version1.1.7
Easy Software ProductsCups Version1.1.10
Easy Software ProductsCups Version1.1.13
Easy Software ProductsCups Version1.1.14
Easy Software ProductsCups Version1.1.17
XpdfXpdf Version0.90
XpdfXpdf Version0.91
XpdfXpdf Version1.0
XpdfXpdf Version1.0a
XpdfXpdf Version1.1
XpdfXpdf Version2.0
XpdfXpdf Version2.1
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.07% 0.184
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.2 3.9 10
AV:L/AC:L/Au:N/C:C/I:C/A:C