Back

HIGH

security flaw

Published Dec 22, 2004

Description

Buffer overflow in the Gfx::doImage function in Gfx.cc for xpdf 3.00, and other products that share code such as tetex-bin and kpdf in KDE 3.2.x to 3.2.3 and 3.3.x to 3.3.2, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted PDF file that causes the boundaries of a maskColors array to be exceeded.

Affected products

Remediation

No remediation recorded yet.

References (32)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner mitre
Published Dec 22, 2004
Updated Aug 8, 2024
Reserved Dec 2, 2004

CISA Vulnrichment

No data

NVD

Status Modified
Modified Jun 16, 2026

Red Hat

Severity Moderate
Public date Dec 21, 2004
Bugzilla 1617371

ENISA EUVD

Assigner mitre
Published Dec 22, 2004
Updated Aug 8, 2024

GitHub

No data