CVE-2006-0301

Published: 01/30/2006 22:03:00
Heap-based buffer overflow in Splash.cc in xpdf, as used in other products such as (1) poppler, (2) kdegraphics, (3) gpdf, (4) pdfkit.framework, and others, allows attackers to cause a denial of service and possibly execute arbitrary code via crafted splash images that produce certain values that exceed the width or height of the associated bitmap.
HIGH
CVSS v2: 7.5

Status

DocFilters Release Package State Justification Comment
25.1 xpdf (4.05) Not Affected Code Not Present
24.4 xpdf (4.05) Not Affected Code Not Present
24.4.0 xpdf (4.05) Not Affected Code Not Present
24.3 xpdf (4.05) Not Affected Code Not Present
24.2.1 xpdf (4.05) Not Affected Code Not Present
24.2 xpdf (4.05) Not Affected Code Not Present
24.1 xpdf (3.02) Not Affected Code Not Present
23.3 xpdf (3.02) Not Affected Code Not Present
23.2.1 xpdf (3.02) Not Affected Code Not Present
23.2 xpdf (3.02) Not Affected Code Not Present
23.1 xpdf (3.02) Not Affected Code Not Present

Severity score breakdown

References