CVE Vulnerabilities

CVE-2002-1384

Published: Jan 02, 2003 | Modified: May 03, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

Integer overflow in pdftops, as used in Xpdf 2.01 and earlier, xpdf-i, and CUPS before 1.1.18, allows local users to execute arbitrary code via a ColorSpace entry with a large number of elements, as demonstrated by cups-pdf.

Affected Software

Name Vendor Start Version End Version
Cups Easy_software_products 1.0.4 (including) 1.0.4 (including)
Cups Easy_software_products 1.0.4_8 (including) 1.0.4_8 (including)
Cups Easy_software_products 1.1.1 (including) 1.1.1 (including)
Cups Easy_software_products 1.1.4 (including) 1.1.4 (including)
Cups Easy_software_products 1.1.4_2 (including) 1.1.4_2 (including)
Cups Easy_software_products 1.1.4_3 (including) 1.1.4_3 (including)
Cups Easy_software_products 1.1.4_5 (including) 1.1.4_5 (including)
Cups Easy_software_products 1.1.6 (including) 1.1.6 (including)
Cups Easy_software_products 1.1.7 (including) 1.1.7 (including)
Cups Easy_software_products 1.1.10 (including) 1.1.10 (including)
Cups Easy_software_products 1.1.13 (including) 1.1.13 (including)
Cups Easy_software_products 1.1.14 (including) 1.1.14 (including)
Cups Easy_software_products 1.1.17 (including) 1.1.17 (including)
Xpdf Xpdf 0.90 (including) 0.90 (including)
Xpdf Xpdf 0.91 (including) 0.91 (including)
Xpdf Xpdf 1.0 (including) 1.0 (including)
Xpdf Xpdf 1.0a (including) 1.0a (including)
Xpdf Xpdf 1.1 (including) 1.1 (including)
Xpdf Xpdf 2.0 (including) 2.0 (including)
Xpdf Xpdf 2.1 (including) 2.1 (including)
Red Hat Enterprise Linux AS (Advanced Server) version 2.1 RedHat *
Red Hat Linux 6.2 RedHat *
Red Hat Linux 7.0 RedHat *
Red Hat Linux 7.1 RedHat *
Red Hat Linux 7.1 RedHat *
Red Hat Linux 7.2 RedHat *
Red Hat Linux 7.3 RedHat *
Red Hat Linux 7.3 RedHat *
Red Hat Linux 8.0 RedHat *
Red Hat Linux 8.0 RedHat *
Red Hat Linux Advanced Workstation 2.1 RedHat *

References