Glyphandcog

Xpdfreader

53 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 6.58%
  • Veröffentlicht 31.03.2011 23:55:00
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Off-by-one error in t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and other products, allows remote attackers to cause a denial of service (application crash) via a PDF document containing a crafted Type 1 font that triggers an inva...

  • EPSS 4.95%
  • Veröffentlicht 31.03.2011 23:55:00
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Use-after-free vulnerability in t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and other products, allows remote attackers to cause a denial of service (application crash) via a PDF document containing a crafted Type 1 font that trig...

  • EPSS 22.37%
  • Veröffentlicht 31.03.2011 23:55:00
  • Zuletzt bearbeitet 11.04.2025 00:51:21

t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and other products, reads from invalid memory locations, which allows remote attackers to cause a denial of service (application crash) via a crafted Type 1 font in a PDF document, a dif...

  • EPSS 31.19%
  • Veröffentlicht 31.03.2011 22:55:02
  • Zuletzt bearbeitet 11.04.2025 00:51:21

t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and other products, uses an invalid pointer in conjunction with a dereference operation, which allows remote attackers to execute arbitrary code via a crafted Type 1 font in a PDF docume...

  • EPSS 1.53%
  • Veröffentlicht 05.11.2010 18:00:25
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The FoFiType1::parse function in fofi/FoFiType1.cc in the PDF parser in xpdf before 3.02pl5, poppler 0.8.7 and possibly other versions up to 0.15.1, kdegraphics, and possibly other products allows context-dependent attackers to cause a denial of serv...

Exploit
  • EPSS 6.28%
  • Veröffentlicht 21.10.2009 17:30:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Integer overflow in the SplashBitmap::SplashBitmap function in Xpdf 3.x before 3.02pl4 and Poppler before 0.12.1 might allow remote attackers to execute arbitrary code via a crafted PDF document that triggers a heap-based buffer overflow. NOTE: some...

Exploit
  • EPSS 9.74%
  • Veröffentlicht 21.10.2009 17:30:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The Splash::drawImage function in Splash.cc in Xpdf 2.x and 3.x before 3.02pl4, and Poppler 0.x, as used in GPdf and kdegraphics KPDF, does not properly allocate memory, which allows remote attackers to cause a denial of service (application crash) o...

Exploit
  • EPSS 6.28%
  • Veröffentlicht 21.10.2009 17:30:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Integer overflow in the PSOutputDev::doImageL1Sep function in Xpdf before 3.02pl4, and Poppler 0.x, as used in kdegraphics KPDF, might allow remote attackers to execute arbitrary code via a crafted PDF document that triggers a heap-based buffer overf...

Exploit
  • EPSS 6.22%
  • Veröffentlicht 21.10.2009 17:30:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Integer overflow in the ObjectStream::ObjectStream function in XRef.cc in Xpdf 3.x before 3.02pl4 and Poppler before 0.12.1, as used in GPdf, kdegraphics KPDF, CUPS pdftops, and teTeX, might allow remote attackers to execute arbitrary code via a craf...

Exploit
  • EPSS 5.3%
  • Veröffentlicht 21.10.2009 17:30:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Integer overflow in the ImageStream::ImageStream function in Stream.cc in Xpdf before 3.02pl4 and Poppler before 0.12.1, as used in GPdf, kdegraphics KPDF, and CUPS pdftops, allows remote attackers to cause a denial of service (application crash) via...