Search CVE reports
21 – 25 of 25 results
CVE-2009-0799
Medium prioritySome fixes available 35 of 78
The JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, and other products allows remote attackers to cause a denial of service (crash) via a crafted PDF file that triggers an out-of-bounds read.
14 affected packages
cups, cupsys, evince, gpdf, ipe...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
cups | — | Not affected | Not affected | Not affected | Not affected |
cupsys | — | Not in release | Not in release | Not in release | Not in release |
evince | — | Not affected | Not affected | Not affected | Not affected |
gpdf | — | Not in release | Not in release | Not in release | Not in release |
ipe | — | Not affected | Not affected | Not affected | Not affected |
kdegraphics | — | Not in release | Not in release | Not in release | Not in release |
koffice | — | Not in release | Not in release | Not in release | Not in release |
libextractor | — | Not affected | Not affected | Not affected | Not affected |
pdfkit.framework | — | Not in release | Not in release | Not in release | Not in release |
pdftohtml | — | Not in release | Not in release | Not in release | Not in release |
poppler | — | Fixed | Fixed | Fixed | Fixed |
tetex-bin | — | Not in release | Not in release | Not in release | Not in release |
texlive-bin | — | Not affected | Not affected | Not affected | Not affected |
xpdf | — | Not affected | Not in release | Not affected | Not affected |
CVE-2009-0166
Medium prioritySome fixes available 35 of 78
The JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, and other products allows remote attackers to cause a denial of service (crash) via a crafted PDF file that triggers a free of uninitialized memory.
14 affected packages
cups, cupsys, evince, gpdf, ipe...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
cups | — | Not affected | Not affected | Not affected | Not affected |
cupsys | — | Not in release | Not in release | Not in release | Not in release |
evince | — | Not affected | Not affected | Not affected | Not affected |
gpdf | — | Not in release | Not in release | Not in release | Not in release |
ipe | — | Not affected | Not affected | Not affected | Not affected |
kdegraphics | — | Not in release | Not in release | Not in release | Not in release |
koffice | — | Not in release | Not in release | Not in release | Not in release |
libextractor | — | Not affected | Not affected | Not affected | Not affected |
pdfkit.framework | — | Not in release | Not in release | Not in release | Not in release |
pdftohtml | — | Not in release | Not in release | Not in release | Not in release |
poppler | — | Fixed | Fixed | Fixed | Fixed |
tetex-bin | — | Not in release | Not in release | Not in release | Not in release |
texlive-bin | — | Not affected | Not affected | Not affected | Not affected |
xpdf | — | Not affected | Not in release | Not affected | Not affected |
CVE-2009-0147
Medium prioritySome fixes available 21 of 58
Multiple integer overflows in the JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, and other products allow remote attackers to cause a denial of service (crash) via a crafted PDF file, related to...
14 affected packages
cups, cupsys, evince, gpdf, ipe...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
cups | — | — | — | — | Not affected |
cupsys | — | — | — | — | Not in release |
evince | — | — | — | — | Not affected |
gpdf | — | — | — | — | Not in release |
ipe | — | — | — | — | Not affected |
kdegraphics | — | — | — | — | Not in release |
koffice | — | — | — | — | Not in release |
libextractor | — | — | — | — | Not affected |
pdfkit.framework | — | — | — | — | Not in release |
pdftohtml | — | — | — | — | Not in release |
poppler | — | — | — | — | Fixed |
tetex-bin | — | — | — | — | Not in release |
texlive-bin | — | — | — | — | Not affected |
xpdf | — | — | — | — | Not affected |
CVE-2009-0146
Medium prioritySome fixes available 21 of 51
Multiple buffer overflows in the JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, and other products allow remote attackers to cause a denial of service (crash) via a crafted PDF file, related to...
14 affected packages
cups, cupsys, evince, gpdf, ipe...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
cups | — | — | — | — | Not affected |
cupsys | — | — | — | — | Not in release |
evince | — | — | — | — | Not affected |
gpdf | — | — | — | — | Not in release |
ipe | — | — | — | — | Not affected |
kdegraphics | — | — | — | — | Not in release |
koffice | — | — | — | — | Not in release |
libextractor | — | — | — | — | Not affected |
pdfkit.framework | — | — | — | — | Not in release |
pdftohtml | — | — | — | — | Not in release |
poppler | — | — | — | — | Fixed |
tetex-bin | — | — | — | — | Not in release |
texlive-bin | — | — | — | — | Not affected |
xpdf | — | — | — | — | Not affected |
CVE-2006-5864
Unknown priorityStack-based buffer overflow in the ps_gettext function in ps.c for GNU gv 3.6.2, and possibly earlier versions, allows user-assisted attackers to execute arbitrary code via a PostScript (PS) file with certain headers that contain...
3 affected packages
evince, evince-gtk, gv
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
evince | — | — | — | — | — |
evince-gtk | — | — | — | — | — |
gv | — | — | — | — | — |