HIGH7.8CVE-2018-11033The DCTStream::readHuffSym function in Stream.cc in the DCT decoder in xpdf before 4.00 allows remote attackers to cause a denial of servic… from 0
HIGH7.8CVE-2018-8100The JPXStream::readTilePart function in JPXStream.cc in xpdf 4.00 allows attackers to launch denial of service (heap-based buffer overflow… from 0
MEDIUM6.5CVE-2010-4653An integer overflow condition in poppler before 0.16.3 can occur when parsing CharCodes for fonts. from 0, < 3.02-9
MEDIUM5.5In xpdf, the xref table contains an infinite loop which allows remote attackers to cause a denial of service (application crash) in xpdf-ba…
from 0
MEDIUM5.5xpdf allows remote attackers to cause a denial of service (NULL pointer dereference and crash) in the way it processes JBIG2 PDF stream obj…
from 0
MEDIUM5.5The function DCTStream::getBlock in Stream.cc in Xpdf 4.00 allows remote attackers to cause a denial of service (NULL pointer dereference)…
from 0
MEDIUM5.5The function DCTStream::decodeImage in Stream.cc in Xpdf 4.00 allows remote attackers to cause a denial of service (NULL pointer dereferenc…
from 0
MEDIUM5.5The function DCTStream::readScan in Stream.cc in Xpdf 4.00 allows remote attackers to cause a denial of service (NULL pointer dereference)…
from 0
MEDIUM5.5The function Object::isName() in Object.h (called from Gfx::opSetFillColorN) in Xpdf 4.00 allows remote attackers to cause a denial of serv…
from 0
MEDIUM5.5The GfxImageColorMap class in GfxState.cc in Xpdf 4.00 allows remote attackers to cause a denial of service (heap-based buffer over-read) v…
from 0
MEDIUM5.5CCITTFaxStream::readRow() in Stream.cc in Xpdf 4.00 allows remote attackers to cause a denial of service (heap-based buffer over-read) via…
from 0
MEDIUM5.5XRef::fetch in XRef.cc in Xpdf 4.00 allows remote attackers to cause a denial of service (stack consumption) via a crafted pdf file, relate…
from 0
MEDIUM5.5SplashXPath::strokeAdjust in splash/SplashXPath.cc in Xpdf 4.00 allows remote attackers to cause a denial of service (heap-based buffer ove…
from 0
MEDIUM5.5The JPXStream::close function in JPXStream.cc in xpdf 4.00 allows attackers to launch denial of service (heap-based buffer over-read and ap…
from 0
MEDIUM5.5The JPXStream::readTilePartData function in JPXStream.cc in xpdf 4.00 allows attackers to launch denial of service (heap-based buffer over-…
from 0
MEDIUM5.5The JPXStream::fillReadBuf function in JPXStream.cc in xpdf 4.00 allows attackers to launch denial of service (heap-based buffer over-read…
from 0
MEDIUM5.5The BufStream::lookChar function in Stream.cc in xpdf 4.00 allows attackers to launch denial of service (heap-based buffer over-read and ap…
from 0
MEDIUM5.5The JBIG2Stream::readGenericBitmap function in JBIG2Stream.cc in xpdf 4.00 allows attackers to launch denial of service (heap-based buffer…
from 0
MEDIUM5.5The JBIG2MMRDecoder::getBlackCode function in JBIG2Stream.cc in xpdf 4.00 allows attackers to launch denial of service (buffer over-read an…
from 0
MEDIUM5.5The JPXStream::inverseTransformLevel function in JPXStream.cc in xpdf 4.00 allows attackers to launch denial of service (heap-based buffer…
from 0
MEDIUM5.5An out-of-bounds read in JPXStream::readTilePart in JPXStream.cc in xpdf 4.00 allows attackers to launch denial of service via a specific p…
from 0
MEDIUM5.5A NULL pointer dereference in XFAForm::scanFields in XFAForm.cc in xpdf 4.00 allows attackers to launch denial of service via a specific pd…
from 0
MEDIUM5.5Infinite recursion in AcroForm::scanField in AcroForm.cc in xpdf 4.00 allows attackers to launch denial of service via a specific pdf file…
from 0
MEDIUM5.5A NULL pointer dereference in JPXStream::fillReadBuf in JPXStream.cc in xpdf 4.00 allows attackers to launch denial of service via a specif…
from 0
MEDIUM5.5An issue was discovered in xpdf 4.00.
from 0
MEDIUM5.5An issue was discovered in xpdf 4.00.
from 0
MEDIUM5.5A large loop in JBIG2Stream::readSymbolDictSeg in xpdf 4.00 allows an attacker to cause denial of service via a specific file due to inappr…
from 0
MEDIUM5.3zxpdf in xpdf before 3.02-19 as packaged in Debian unstable and 3.02-12+squeeze1 as packaged in Debian squeeze deletes temporary files inse…
from 0, < 3.02-19
—The openTempFile function in goo/gfile.cc in Xpdf and Poppler 0.24.3 and earlier, when running on a system other than Unix, allows local us…
from 0
—Off-by-one error in t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and other products, allows remote attackers to cause a…
from 0, < 3.02-9
—Use-after-free vulnerability in t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and other products, allows remote attackers…
from 0, < 3.02-9
—t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and other products, reads from invalid memory locations, which allows remot…
from 0, < 3.02-9
—t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and other products, uses an invalid pointer in conjunction with a dereferen…
from 0, < 3.02-9
—The FoFiType1::parse function in fofi/FoFiType1.cc in the PDF parser in xpdf before 3.02pl5, poppler 0.8.7 and possibly other versions up t…
from 0, < 3.02-9
—The PostScriptFunction::PostScriptFunction function in poppler/Function.cc in the PDF parser in poppler 0.8.7 and possibly other versions u…
from 0, < 3.02-9
—xpdf - several vulnerabilities
from 0, < 3.02-1.4+lenny3
—xpdf - several vulnerabilities
from 0, < 3.02-9
—The FoFiType1::parse function in fofi/FoFiType1.cc in Xpdf 3.0.0, gpdf 2.8.2, kpdf in kdegraphics 3.3.1, and possibly other libraries and v…
from 0, < 3.01-1
—Integer overflow in the ImageStream::ImageStream function in Stream.cc in Xpdf before 3.02pl4 and Poppler before 0.12.1, as used in GPdf, k…
from 0, < 3.02-2
—Integer overflow in the ObjectStream::ObjectStream function in XRef.cc in Xpdf 3.x before 3.02pl4 and Poppler before 0.12.1, as used in GPd…
from 0, < 3.02-2
—Integer overflow in the PSOutputDev::doImageL1Sep function in Xpdf before 3.02pl4, and Poppler 0.x, as used in kdegraphics KPDF, might allo…
from 0, < 3.02-2
—The Splash::drawImage function in Splash.cc in Xpdf 2.x and 3.x before 3.02pl4, and Poppler 0.x, as used in GPdf and kdegraphics KPDF, does…
from 0, < 3.02-2
—Integer overflow in the SplashBitmap::SplashBitmap function in Xpdf 3.x before 3.02pl4 and Poppler before 0.12.1 might allow remote attacke…
from 0, < 3.02-2
—kdegraphics - several vulnerabilities
from 0, < 3.02-1.4+lenny2
—kdegraphics - several vulnerabilities
from 0, < 3.02-2
—Integer overflow in the JBIG2 decoder in Xpdf 3.02pl2 and earlier, as used in Poppler and other products, when running on Mac OS X, has uns…
from 0, < 3.02-1.4+lenny1
—The JBIG2 MMR decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, and other products allows remote attacker…
from 0, < 3.02-1.4+lenny1
—Multiple buffer overflows in the JBIG2 MMR decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, and other pr…
from 0, < 3.02-1.4+lenny1
—The JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, and other products allows remote attackers to…
from 0, < 3.02-1.4+lenny1
—The JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, and other products allows remote attackers to…
from 0, < 3.02-1.4+lenny1
—Integer overflow in the JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, and other products allows…
from 0, < 3.02-1.4+lenny1
—Multiple "input validation flaws" in the JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, and othe…
from 0, < 3.02-1.4+lenny1
—The JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, and other products allows remote attackers to…
from 0, < 3.02-1.4+lenny1
—Heap-based buffer overflow in Xpdf 3.02pl2 and earlier, CUPS 1.3.9, and probably other products, allows remote attackers to execute arbitra…
from 0, < 3.02-1.4+lenny1
—The JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, and other products allows remote attackers to cause a denial of serv…
from 0, < 3.02-1.4+lenny1
—Multiple integer overflows in the JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, and other products allow remote attack…
from 0, < 3.02-1.4+lenny1
—kdegraphics - multiple vulnerabilities
from 0, < 3.02-1.4+lenny1
—kdegraphics - multiple vulnerabilities
from 0, < 3.01-9.1+etch6
—poppler - execution of arbitrary code
from 0, < 3.01-9.1+etch3
—poppler - execution of arbitrary code
from 0, < 3.02
—Integer overflow in the DCTStream::reset method in xpdf/Stream.cc in Xpdf 3.02p11 allows remote attackers to execute arbitrary code via a c…
from 0, < 3.02-1.3
—koffice - several vulnerabilities
from 0, < 3.01-9.1+etch2
—koffice - several vulnerabilities
from 0, < 3.02-1.3
—kdegraphics - buffer overflow with arbitrary code execution
from 0, < 3.02-1.3
—poppler - buffer overflow
from 0, < 3.01-9etch1
—poppler - buffer overflow
from 0, < 3.02-1.1
—The Adobe PDF specification 1.3, as implemented by (a) xpdf 3.0.1 patch 2, (b) kpdf in KDE before 3.5.5, (c) poppler before 0.5.4, and othe…
from 0, < 3.02
—libextractor - several
from 0, < 3.00-13.5
—libextractor - several
from 0, < 3.01-6
—Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial…
from 0, < 3.01-4
—Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial…
from 0, < 3.01-4
—Buffer overflow in the JBIG2Bitmap::JBIG2Bitmap function in JBIG2Stream.cc in Xpdf, as used in products such as gpdf, kpdf, pdftohtml, popp…
from 0, < 3.01-4
—Stream.cc in Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to m…
from 0, < 3.01-4
—The CCITTFaxStream::CCITTFaxStream function in Stream.cc for xpdf, gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others al…
from 0, < 3.01-4
—koffice - several
from 0, < 3.01-3
—pdftohtml - several
from 0, < 1.00-3.8
—pdftohtml - several
from 0, < 3.01-3
—Heap-based buffer overflow in the JPXStream::readCodestream function in the JPX stream parsing code (JPXStream.c) for xpdf 3.01 and earlier…
from 0, < 3.01-3
—gpdf - multiple vulnerabilities
from 0, < 3.00-15
—gpdf - multiple vulnerabilities
from 0, < 3.00-13.6
—xpdf - buffer overflow
from 0, < 3.00-13
—xpdf - buffer overflow
from 0, < 1.00-3.4
—tetex-bin - integer overflows
from 0, < 1.00-3.2
—tetex-bin - integer overflows
from 0, < 3.00-9
—Multiple integer overflows in xpdf 3.0, and other packages that use xpdf code such as CUPS, allow remote attackers to cause a denial of ser…
from 0, < 3.00-10
—cupsys - buffer overflow
from 0, < 3.00-11
—cupsys - buffer overflow
from 0, < 1.00-3.3
—Various PDF viewers including (1) Adobe Acrobat 5.06 and (2) Xpdf 1.01 allow remote attackers to execute arbitrary commands via shell metac…
from 0, < 2.02pl1-1
—xpdf - integer overflow
from 0, < 2.01-2
—xpdf - integer overflow
from 0, < 1.00-3.1