Integer overflow in the JBIG2 decoding feature in Poppler before 0.10.6 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via vectors related to CairoOutputDev (CairoOutputDev.cc).
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Poppler | Poppler | * | 0.10.5 (including) |
| Poppler | Poppler | 0.1 (including) | 0.1 (including) |
| Poppler | Poppler | 0.1.1 (including) | 0.1.1 (including) |
| Poppler | Poppler | 0.1.2 (including) | 0.1.2 (including) |
| Poppler | Poppler | 0.2.0 (including) | 0.2.0 (including) |
| Poppler | Poppler | 0.3.0 (including) | 0.3.0 (including) |
| Poppler | Poppler | 0.3.1 (including) | 0.3.1 (including) |
| Poppler | Poppler | 0.3.2 (including) | 0.3.2 (including) |
| Poppler | Poppler | 0.3.3 (including) | 0.3.3 (including) |
| Poppler | Poppler | 0.4.0 (including) | 0.4.0 (including) |
| Poppler | Poppler | 0.4.1 (including) | 0.4.1 (including) |
| Poppler | Poppler | 0.4.2 (including) | 0.4.2 (including) |
| Poppler | Poppler | 0.4.3 (including) | 0.4.3 (including) |
| Poppler | Poppler | 0.4.4 (including) | 0.4.4 (including) |
| Poppler | Poppler | 0.5.0 (including) | 0.5.0 (including) |
| Poppler | Poppler | 0.5.1 (including) | 0.5.1 (including) |
| Poppler | Poppler | 0.5.2 (including) | 0.5.2 (including) |
| Poppler | Poppler | 0.5.3 (including) | 0.5.3 (including) |
| Poppler | Poppler | 0.5.4 (including) | 0.5.4 (including) |
| Poppler | Poppler | 0.5.9 (including) | 0.5.9 (including) |
| Poppler | Poppler | 0.5.90 (including) | 0.5.90 (including) |
| Poppler | Poppler | 0.5.91 (including) | 0.5.91 (including) |
| Poppler | Poppler | 0.6.0 (including) | 0.6.0 (including) |
| Poppler | Poppler | 0.6.1 (including) | 0.6.1 (including) |
| Poppler | Poppler | 0.6.2 (including) | 0.6.2 (including) |
| Poppler | Poppler | 0.6.3 (including) | 0.6.3 (including) |
| Poppler | Poppler | 0.6.4 (including) | 0.6.4 (including) |
| Poppler | Poppler | 0.7.0 (including) | 0.7.0 (including) |
| Poppler | Poppler | 0.7.1 (including) | 0.7.1 (including) |
| Poppler | Poppler | 0.7.2 (including) | 0.7.2 (including) |
| Poppler | Poppler | 0.7.3 (including) | 0.7.3 (including) |
| Poppler | Poppler | 0.8.0 (including) | 0.8.0 (including) |
| Poppler | Poppler | 0.8.1 (including) | 0.8.1 (including) |
| Poppler | Poppler | 0.8.2 (including) | 0.8.2 (including) |
| Poppler | Poppler | 0.8.3 (including) | 0.8.3 (including) |
| Poppler | Poppler | 0.8.4 (including) | 0.8.4 (including) |
| Poppler | Poppler | 0.8.5 (including) | 0.8.5 (including) |
| Poppler | Poppler | 0.8.6 (including) | 0.8.6 (including) |
| Poppler | Poppler | 0.8.7 (including) | 0.8.7 (including) |
| Poppler | Poppler | 0.9.0 (including) | 0.9.0 (including) |
| Poppler | Poppler | 0.9.1 (including) | 0.9.1 (including) |
| Poppler | Poppler | 0.9.2 (including) | 0.9.2 (including) |
| Poppler | Poppler | 0.9.3 (including) | 0.9.3 (including) |
| Poppler | Poppler | 0.10.0 (including) | 0.10.0 (including) |
| Poppler | Poppler | 0.10.1 (including) | 0.10.1 (including) |
| Poppler | Poppler | 0.10.2 (including) | 0.10.2 (including) |
| Poppler | Poppler | 0.10.3 (including) | 0.10.3 (including) |
| Poppler | Poppler | 0.10.4 (including) | 0.10.4 (including) |
| Red Hat Enterprise Linux 5 | RedHat | poppler-0:0.5.4-4.4.el5_3.9 | * |
| Cups | Ubuntu | upstream | * |
| Cupsys | Ubuntu | upstream | * |
| Gpdf | Ubuntu | dapper | * |
| Ipe | Ubuntu | dapper | * |
| Ipe | Ubuntu | gutsy | * |
| Ipe | Ubuntu | hardy | * |
| Koffice | Ubuntu | dapper | * |
| Koffice | Ubuntu | gutsy | * |
| Libextractor | Ubuntu | dapper | * |
| Libextractor | Ubuntu | gutsy | * |
| Pdfkit.framework | Ubuntu | dapper | * |
| Pdftohtml | Ubuntu | dapper | * |
| Poppler | Ubuntu | dapper | * |
| Poppler | Ubuntu | devel | * |
| Poppler | Ubuntu | gutsy | * |
| Poppler | Ubuntu | hardy | * |
| Poppler | Ubuntu | intrepid | * |
| Poppler | Ubuntu | jaunty | * |
| Poppler | Ubuntu | karmic | * |
| Xpdf | Ubuntu | dapper | * |
| Xpdf | Ubuntu | gutsy | * |
| Xpdf | Ubuntu | hardy | * |