CVE Vulnerabilities

CVE-2011-1554

Published: Mar 31, 2011 | Modified: Nov 21, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:N/A:P
RedHat/V2
6.8 MODERATE
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V3
Ubuntu
LOW

Off-by-one error in t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and other products, allows remote attackers to cause a denial of service (application crash) via a PDF document containing a crafted Type 1 font that triggers an invalid memory read, integer overflow, and invalid pointer dereference, a different vulnerability than CVE-2011-0764.

Affected Software

Name Vendor Start Version End Version
T1lib T1lib * 5.1.2 (including)
T1lib T1lib 0.1-alpha (including) 0.1-alpha (including)
T1lib T1lib 0.2-beta (including) 0.2-beta (including)
T1lib T1lib 0.3-beta (including) 0.3-beta (including)
T1lib T1lib 0.4-beta (including) 0.4-beta (including)
T1lib T1lib 0.5-beta (including) 0.5-beta (including)
T1lib T1lib 0.6-beta (including) 0.6-beta (including)
T1lib T1lib 0.7-beta (including) 0.7-beta (including)
T1lib T1lib 0.8-beta (including) 0.8-beta (including)
T1lib T1lib 0.9 (including) 0.9 (including)
T1lib T1lib 0.9.1 (including) 0.9.1 (including)
T1lib T1lib 0.9.2 (including) 0.9.2 (including)
T1lib T1lib 1.0 (including) 1.0 (including)
T1lib T1lib 1.0.1 (including) 1.0.1 (including)
T1lib T1lib 1.1.0 (including) 1.1.0 (including)
T1lib T1lib 1.1.1 (including) 1.1.1 (including)
T1lib T1lib 1.2 (including) 1.2 (including)
T1lib T1lib 1.3 (including) 1.3 (including)
T1lib T1lib 1.3.1 (including) 1.3.1 (including)
T1lib T1lib 5.0.0 (including) 5.0.0 (including)
T1lib T1lib 5.0.1 (including) 5.0.1 (including)
T1lib T1lib 5.0.2 (including) 5.0.2 (including)
T1lib T1lib 5.1.0 (including) 5.1.0 (including)
T1lib T1lib 5.1.1 (including) 5.1.1 (including)
Red Hat Enterprise Linux 5 RedHat tetex-0:3.0-33.15.el5_8.1 *
Red Hat Enterprise Linux 6 RedHat t1lib-0:5.1.2-6.el6_2.1 *
Red Hat Enterprise Linux 6 RedHat texlive-0:2007-57.el6_2 *
T1lib Ubuntu dapper *
T1lib Ubuntu devel *
T1lib Ubuntu hardy *
T1lib Ubuntu karmic *
T1lib Ubuntu lucid *
T1lib Ubuntu maverick *
T1lib Ubuntu natty *
T1lib Ubuntu oneiric *

References