CVE-2006-0301

Published: January 30th, 2006
Heap-based buffer overflow in Splash.cc in xpdf, as used in other products such as (1) poppler, (2) kdegraphics, (3) gpdf, (4) pdfkit.framework, and others, allows attackers to cause a denial of service and possibly execute arbitrary code via crafted splash images that produce certain values that exceed the width or height of the associated bitmap.
HIGH
CVSS v2: 7.5

Status

DocFilters Release Package State Justification Comment
0.0.0.1 xpdf (4.05) Not Affected Code Not Present
26.1.1 xpdf (4.05) Not Affected Code Not Present
26.1 xpdf (4.05) Not Affected Code Not Present
25.4 xpdf (4.05) Not Affected Code Not Present
25.3 xpdf (4.05) Not Affected Code Not Present
25.2 xpdf (4.05) Not Affected Code Not Present
25.1.2 xpdf (4.05) Not Affected Code Not Present
25.1.1 xpdf (4.05) Not Affected Code Not Present
25.1 xpdf (4.05) Not Affected Code Not Present
24.4 xpdf (4.05) Not Affected Code Not Present
24.4.0 xpdf (4.05) Not Affected Code Not Present
24.3 xpdf (4.05) Not Affected Code Not Present
24.2.1 xpdf (4.05) Not Affected Code Not Present
24.2 xpdf (4.05) Not Affected Code Not Present
24.1 xpdf (3.02) Not Affected Code Not Present
23.3 xpdf (3.02) Not Affected Code Not Present
23.2.1 xpdf (3.02) Not Affected Code Not Present
23.2 xpdf (3.02) Not Affected Code Not Present
23.1 xpdf (3.02) Not Affected Code Not Present

Severity score breakdown

References