CVE Vulnerabilities

CVE-2009-3608

Published: Oct 21, 2009 | Modified: Feb 13, 2023
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

Integer overflow in the ObjectStream::ObjectStream function in XRef.cc in Xpdf 3.x before 3.02pl4 and Poppler before 0.12.1, as used in GPdf, kdegraphics KPDF, CUPS pdftops, and teTeX, might allow remote attackers to execute arbitrary code via a crafted PDF document that triggers a heap-based buffer overflow.

Affected Software

Name Vendor Start Version End Version
Xpdf Foolabs 3.02pl1 3.02pl1
Xpdf Foolabs 3.02pl2 3.02pl2
Xpdf Foolabs 3.02pl3 3.02pl3
Xpdfreader Glyphandcog 3.00 3.00
Xpdfreader Glyphandcog 3.01 3.01
Xpdfreader Glyphandcog 3.02 3.02
Poppler Poppler * 0.12.0
Poppler Poppler 0.1 0.1
Poppler Poppler 0.1.1 0.1.1
Poppler Poppler 0.1.2 0.1.2
Poppler Poppler 0.2.0 0.2.0
Poppler Poppler 0.3.0 0.3.0
Poppler Poppler 0.3.1 0.3.1
Poppler Poppler 0.3.2 0.3.2
Poppler Poppler 0.3.3 0.3.3
Poppler Poppler 0.4.0 0.4.0
Poppler Poppler 0.4.1 0.4.1
Poppler Poppler 0.4.2 0.4.2
Poppler Poppler 0.4.3 0.4.3
Poppler Poppler 0.4.4 0.4.4
Poppler Poppler 0.5.0 0.5.0
Poppler Poppler 0.5.1 0.5.1
Poppler Poppler 0.5.2 0.5.2
Poppler Poppler 0.5.3 0.5.3
Poppler Poppler 0.5.4 0.5.4
Poppler Poppler 0.5.9 0.5.9
Poppler Poppler 0.6.0 0.6.0
Poppler Poppler 0.6.1 0.6.1
Poppler Poppler 0.6.2 0.6.2
Poppler Poppler 0.6.3 0.6.3
Poppler Poppler 0.6.4 0.6.4
Poppler Poppler 0.7.0 0.7.0
Poppler Poppler 0.7.1 0.7.1
Poppler Poppler 0.7.2 0.7.2
Poppler Poppler 0.7.3 0.7.3
Poppler Poppler 0.8.0 0.8.0
Poppler Poppler 0.8.1 0.8.1
Poppler Poppler 0.8.2 0.8.2
Poppler Poppler 0.8.3 0.8.3
Poppler Poppler 0.8.4 0.8.4
Poppler Poppler 0.8.6 0.8.6
Poppler Poppler 0.8.7 0.8.7
Poppler Poppler 0.9.0 0.9.0
Poppler Poppler 0.9.1 0.9.1
Poppler Poppler 0.9.2 0.9.2
Poppler Poppler 0.9.3 0.9.3
Poppler Poppler 0.10.0 0.10.0
Poppler Poppler 0.10.1 0.10.1
Poppler Poppler 0.10.2 0.10.2
Poppler Poppler 0.10.3 0.10.3
Poppler Poppler 0.10.4 0.10.4
Poppler Poppler 0.10.5 0.10.5
Poppler Poppler 0.10.6 0.10.6
Poppler Poppler 0.10.7 0.10.7
Poppler Poppler 0.11.0 0.11.0
Poppler Poppler 0.11.1 0.11.1
Poppler Poppler 0.11.2 0.11.2
Poppler Poppler 0.11.3 0.11.3

References