CVE Vulnerabilities

CVE-2005-3624

Published: Dec 31, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

The CCITTFaxStream::CCITTFaxStream function in Stream.cc for xpdf, gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others allows attackers to corrupt the heap via negative or large integers in a CCITTFaxDecode stream, which lead to integer overflows and integer underflows.

Affected Software

NameVendorStart VersionEnd Version
CupsEasy_software_products1.1.22 (including)1.1.22 (including)
CupsEasy_software_products1.1.22_rc1 (including)1.1.22_rc1 (including)
CupsEasy_software_products1.1.23 (including)1.1.23 (including)
CupsEasy_software_products1.1.23_rc1 (including)1.1.23_rc1 (including)
KdegraphicsKde3.2 (including)3.2 (including)
KdegraphicsKde3.4.3 (including)3.4.3 (including)
KofficeKde1.4 (including)1.4 (including)
KofficeKde1.4.1 (including)1.4.1 (including)
KofficeKde1.4.2 (including)1.4.2 (including)
KpdfKde3.2 (including)3.2 (including)
KpdfKde3.4.3 (including)3.4.3 (including)
KwordKde1.4.2 (including)1.4.2 (including)
LibextractorLibextractor**
PopplerPoppler0.4.2 (including)0.4.2 (including)
PropackSgi3.0-sp6 (including)3.0-sp6 (including)
TetexTetex1.0.7 (including)1.0.7 (including)
TetexTetex2.0 (including)2.0 (including)
TetexTetex2.0.1 (including)2.0.1 (including)
TetexTetex2.0.2 (including)2.0.2 (including)
TetexTetex3.0 (including)3.0 (including)
XpdfXpdf3.0 (including)3.0 (including)
LinuxConectiva10.0 (including)10.0 (including)
Red Hat Enterprise Linux 3RedHatxpdf-1:2.02-9.8*
Red Hat Enterprise Linux 3RedHattetex-0:1.0.7-67.9*
Red Hat Enterprise Linux 3RedHatcups-1:1.1.17-13.3.36*
Red Hat Enterprise Linux 4RedHatxpdf-1:3.00-11.10*
Red Hat Enterprise Linux 4RedHatkdegraphics-7:3.3.1-3.6*
Red Hat Enterprise Linux 4RedHattetex-0:2.0.2-22.EL4.7*
Red Hat Enterprise Linux 4RedHatcups-1:1.1.22-0.rc1.9.10*
Red Hat Enterprise Linux 4RedHatgpdf-0:2.8.2-7.4*
GpdfUbuntudapper*
GpdfUbuntuedgy*
KdegraphicsUbuntudapper*
KdegraphicsUbuntudevel*
KdegraphicsUbuntuedgy*
KdegraphicsUbuntufeisty*
KofficeUbuntudapper*
KofficeUbuntudevel*
KofficeUbuntuedgy*
KofficeUbuntufeisty*
PopplerUbuntudapper*
PopplerUbuntudevel*
PopplerUbuntuedgy*
PopplerUbuntufeisty*

References