CVE Vulnerabilities

CVE-2005-3624

Published: Dec 31, 2005 | Modified: Oct 19, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

The CCITTFaxStream::CCITTFaxStream function in Stream.cc for xpdf, gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others allows attackers to corrupt the heap via negative or large integers in a CCITTFaxDecode stream, which lead to integer overflows and integer underflows.

Affected Software

Name Vendor Start Version End Version
Cups Easy_software_products 1.1.22 (including) 1.1.22 (including)
Cups Easy_software_products 1.1.22_rc1 (including) 1.1.22_rc1 (including)
Cups Easy_software_products 1.1.23 (including) 1.1.23 (including)
Cups Easy_software_products 1.1.23_rc1 (including) 1.1.23_rc1 (including)
Kdegraphics Kde 3.2 (including) 3.2 (including)
Kdegraphics Kde 3.4.3 (including) 3.4.3 (including)
Koffice Kde 1.4 (including) 1.4 (including)
Koffice Kde 1.4.1 (including) 1.4.1 (including)
Koffice Kde 1.4.2 (including) 1.4.2 (including)
Kpdf Kde 3.2 (including) 3.2 (including)
Kpdf Kde 3.4.3 (including) 3.4.3 (including)
Kword Kde 1.4.2 (including) 1.4.2 (including)
Libextractor Libextractor * *
Poppler Poppler 0.4.2 (including) 0.4.2 (including)
Propack Sgi 3.0-sp6 (including) 3.0-sp6 (including)
Tetex Tetex 1.0.7 (including) 1.0.7 (including)
Tetex Tetex 2.0 (including) 2.0 (including)
Tetex Tetex 2.0.1 (including) 2.0.1 (including)
Tetex Tetex 2.0.2 (including) 2.0.2 (including)
Tetex Tetex 3.0 (including) 3.0 (including)
Xpdf Xpdf 3.0 (including) 3.0 (including)
Linux Conectiva 10.0 (including) 10.0 (including)
Red Hat Enterprise Linux 3 RedHat xpdf-1:2.02-9.8 *
Red Hat Enterprise Linux 3 RedHat tetex-0:1.0.7-67.9 *
Red Hat Enterprise Linux 3 RedHat cups-1:1.1.17-13.3.36 *
Red Hat Enterprise Linux 4 RedHat xpdf-1:3.00-11.10 *
Red Hat Enterprise Linux 4 RedHat kdegraphics-7:3.3.1-3.6 *
Red Hat Enterprise Linux 4 RedHat tetex-0:2.0.2-22.EL4.7 *
Red Hat Enterprise Linux 4 RedHat cups-1:1.1.22-0.rc1.9.10 *
Red Hat Enterprise Linux 4 RedHat gpdf-0:2.8.2-7.4 *
Gpdf Ubuntu dapper *
Gpdf Ubuntu edgy *
Kdegraphics Ubuntu dapper *
Kdegraphics Ubuntu devel *
Kdegraphics Ubuntu edgy *
Kdegraphics Ubuntu feisty *
Koffice Ubuntu dapper *
Koffice Ubuntu devel *
Koffice Ubuntu edgy *
Koffice Ubuntu feisty *
Poppler Ubuntu dapper *
Poppler Ubuntu devel *
Poppler Ubuntu edgy *
Poppler Ubuntu feisty *

References