[Forgot Password]
Login  Register Subscribe

30389

 
 

423868

 
 

244411

 
 

909

 
 

193363

 
 

277

Paid content will be excluded from the download.


Download | Alert*
OVAL

MDVSA-2010:055 -- Mandriva poppler

ID: oval:org.secpod.oval:def:300085Date: (C)2012-01-07   (M)2024-01-02
Class: PATCHFamily: unix




An out-of-bounds reading flaw in the JBIG2 decoder allows remote attackers to cause a denial of service via a crafted PDF file . Multiple input validation flaws in the JBIG2 decoder allows remote attackers to execute arbitrary code via a crafted PDF file . An integer overflow in the JBIG2 decoder allows remote attackers to execute arbitrary code via a crafted PDF file . A free of invalid data flaw in the JBIG2 decoder allows remote attackers to execute arbitrary code via a crafted PDF . A NULL pointer dereference flaw in the JBIG2 decoder allows remote attackers to cause denial of service via a crafted PDF file . Multiple buffer overflows in the JBIG2 MMR decoder allows remote attackers to cause denial of service or to execute arbitrary code via a crafted PDF file . An integer overflow in the JBIG2 decoding feature allows remote attackers to cause a denial of service and possibly execute arbitrary code via vectors related to CairoOutputDev . An integer overflow in the JBIG2 decoding feature allows remote attackers to execute arbitrary code or cause a denial of service via a crafted PDF document . Integer overflow in the SplashBitmap::SplashBitmap function in Xpdf 3.x before 3.02pl4 and Poppler before 0.12.1 might allow remote attackers to execute arbitrary code via a crafted PDF document that triggers a heap-based buffer overflow. NOTE: some of these details are obtained from third party information. NOTE: this issue reportedly exists because of an incomplete fix for CVE-2009-1188 . The Splash::drawImage function in Splash.cc in Xpdf 2.x and 3.x before 3.02pl4, and Poppler 0.x, as used in GPdf and kdegraphics KPDF, does not properly allocate memory, which allows remote attackers to cause a denial of service or possibly execute arbitrary code via a crafted PDF document that triggers a NULL pointer dereference or a heap-based buffer overflow . Multiple integer overflows allow remote attackers to cause a denial of service or possibly execute arbitrary code via a crafted PDF file, related to glib/poppler-page.cc; ArthurOutputDev.cc, CairoOutputDev.cc, GfxState.cc, JBIG2Stream.cc, PSOutputDev.cc, and SplashOutputDev.cc in poppler/; and SplashBitmap.cc, Splash.cc, and SplashFTFont.cc in splash/. NOTE: this may overlap CVE-2009-0791 . Integer overflow in the PSOutputDev::doImageL1Sep function in Xpdf before 3.02pl4, and Poppler 0.x, as used in kdegraphics KPDF, might allow remote attackers to execute arbitrary code via a crafted PDF document that triggers a heap-based buffer overflow . Integer overflow in the create_surface_from_thumbnail_data function in glib/poppler-page.cc allows remote attackers to cause a denial of service or possibly execute arbitrary code via a crafted PDF document that triggers a heap-based buffer overflow. NOTE: some of these details are obtained from third party information . Integer overflow in the ObjectStream::ObjectStream function in XRef.cc in Xpdf 3.x before 3.02pl4 and Poppler before 0.12.1, as used in GPdf, kdegraphics KPDF, CUPS pdftops, and teTeX, might allow remote attackers to execute arbitrary code via a crafted PDF document that triggers a heap-based buffer overflow . Integer overflow in the ImageStream::ImageStream function in Stream.cc in Xpdf before 3.02pl4 and Poppler before 0.12.1, as used in GPdf, kdegraphics KPDF, and CUPS pdftops, allows remote attackers to cause a denial of service via a crafted PDF document that triggers a NULL pointer dereference or buffer over-read . Buffer overflow in the ABWOutputDev::endWord function in poppler/ABWOutputDev.cc as used by the Abiword pdftoabw utility, allows user-assisted remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted PDF file . This update provides fixes for that vulnerabilities.

Platform:
Mandriva Linux 2008.0
Product:
poppler
Reference:
MDVSA-2010:055
CVE-2009-3609
CVE-2009-3608
CVE-2009-3607
CVE-2009-3606
CVE-2009-3605
CVE-2009-3604
CVE-2009-3603
CVE-2009-1188
CVE-2009-1183
CVE-2009-1182
CVE-2009-1181
CVE-2009-1180
CVE-2009-1179
CVE-2009-0800
CVE-2009-0799
CVE-2009-3938
CVE    16
CVE-2009-3606
CVE-2009-3607
CVE-2009-3938
CVE-2009-3603
...
CPE    1
cpe:/o:mandriva:linux:2008.0

© SecPod Technologies