CVE-2005-2097
Published: 08/16/2005 04:00:00
xpdf and kpdf do not properly validate the "loca" table in PDF files, which allows local users to cause a denial of service (disk consumption and hang) via a PDF file with a "broken" loca table, which causes a large temporary file to be created when xpdf attempts to reconstruct the information.
LOW
CVSS v2: 2.1
CVSS v2: 2.1
Status
DocFilters Release | Package | State | Justification | Comment |
---|---|---|---|---|
25.1 | xpdf (4.05) | Not Affected | Code Not Present | 4.05 does not match CVE configuration. |
24.4 | xpdf (4.05) | Not Affected | Code Not Present | 4.05 does not match CVE configuration. |
24.4.0 | xpdf (4.05) | Not Affected | Code Not Present | 4.05 does not match CVE configuration. |
24.3 | xpdf (4.05) | Not Affected | Code Not Present | 4.05 does not match CVE configuration. |
24.2.1 | xpdf (4.05) | Not Affected | Code Not Present | 4.05 does not match CVE configuration. |
24.2 | xpdf (4.05) | Not Affected | Code Not Present | 4.05 does not match CVE configuration. |
24.1 | xpdf (3.02) | Not Affected | Code Not Present | 3.02 does not match CVE configuration. |
23.3 | xpdf (3.02) | Not Affected | Code Not Present | 3.02 does not match CVE configuration. |
23.2.1 | xpdf (3.02) | Not Affected | Code Not Present | 3.02 does not match CVE configuration. |
23.2 | xpdf (3.02) | Not Affected | Code Not Present | 3.02 does not match CVE configuration. |
23.1 | xpdf (3.02) | Not Affected | Code Not Present | 3.02 does not match CVE configuration. |