CVE-2007-4352
Published: August 11, 2007
Array index error in the DCTStream::readProgressiveDataUnit method in xpdf/Stream.cc in Xpdf 3.02pl1, as used in poppler, teTeX, KDE, KOffice, CUPS, and other products, allows remote attackers to trigger memory corruption and execute arbitrary code via a crafted PDF file.
HIGH
CVSS v2: 7.6
CVSS v2: 7.6
Status
| DocFilters Release | Package | State | Justification | Comment |
|---|---|---|---|---|
| 0.0.0.1 | xpdf (4.05) | Not Affected | Code Not Present | 4.05 does not match CVE configuration. |
| 25.4 | xpdf (4.05) | Not Affected | Code Not Present | 4.05 does not match CVE configuration. |
| 25.3 | xpdf (4.05) | Not Affected | Code Not Present | 4.05 does not match CVE configuration. |
| 25.2 | xpdf (4.05) | Not Affected | Code Not Present | 4.05 does not match CVE configuration. |
| 25.1.1 | xpdf (4.05) | Not Affected | Code Not Present | 4.05 does not match CVE configuration. |
| 25.1 | xpdf (4.05) | Not Affected | Code Not Present | 4.05 does not match CVE configuration. |
| 24.4 | xpdf (4.05) | Not Affected | Code Not Present | 4.05 does not match CVE configuration. |
| 24.4.0 | xpdf (4.05) | Not Affected | Code Not Present | 4.05 does not match CVE configuration. |
| 24.3 | xpdf (4.05) | Not Affected | Code Not Present | 4.05 does not match CVE configuration. |
| 24.2.1 | xpdf (4.05) | Not Affected | Code Not Present | 4.05 does not match CVE configuration. |
| 24.2 | xpdf (4.05) | Not Affected | Code Not Present | 4.05 does not match CVE configuration. |
| 24.1 | xpdf (3.02) | Not Affected | Code Not Present | 3.02 does not match CVE configuration. |
| 23.3 | xpdf (3.02) | Not Affected | Code Not Present | 3.02 does not match CVE configuration. |
| 23.2.1 | xpdf (3.02) | Not Affected | Code Not Present | 3.02 does not match CVE configuration. |
| 23.2 | xpdf (3.02) | Not Affected | Code Not Present | 3.02 does not match CVE configuration. |
| 23.1 | xpdf (3.02) | Not Affected | Code Not Present | 3.02 does not match CVE configuration. |