security flaw
Published Dec 22, 2004
9.3
HIGHCVSS 2.0
EPSS 6.58%
Description
Buffer overflow in the Gfx::doImage function in Gfx.cc for xpdf 3.00, and other products that share code such as tetex-bin and kpdf in KDE 3.2.x to 3.2.3 and 3.3.x to 3.3.2, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted PDF file that causes the boundaries of a maskColors array to be exceeded.
Affected products
No data.
No data.
Red Hat Enterprise Linux 3
cups-1:1.1.17-13.3.22
Fixed · RHSA-2005:013
Red Hat Enterprise Linux 3
tetex-0:1.0.7-67.7
Fixed · RHSA-2005:354
Red Hat Enterprise Linux 3
xpdf-1:2.02-9.4
Fixed · RHSA-2005:018
Red Hat Enterprise Linux 4
cups-1:1.1.22-0.rc1.9.6
Fixed · RHSA-2005:053
Red Hat Enterprise Linux 4
gpdf-0:2.8.2-4.3
Fixed · RHSA-2005:057
Red Hat Enterprise Linux 4
kdegraphics-7:3.3.1-3.3
Fixed · RHSA-2005:066
Red Hat Enterprise Linux 4
tetex-0:2.0.2-22.EL4.4
Fixed · RHSA-2005:026
Red Hat Enterprise Linux 4
xpdf-1:3.00-11.5
Fixed · RHSA-2005:034
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 3 | cups-1:1.1.17-13.3.22 | Fixed | RHSA-2005:013 |
| Red Hat Enterprise Linux 3 | tetex-0:1.0.7-67.7 | Fixed | RHSA-2005:354 |
| Red Hat Enterprise Linux 3 | xpdf-1:2.02-9.4 | Fixed | RHSA-2005:018 |
| Red Hat Enterprise Linux 4 | cups-1:1.1.22-0.rc1.9.6 | Fixed | RHSA-2005:053 |
| Red Hat Enterprise Linux 4 | gpdf-0:2.8.2-4.3 | Fixed | RHSA-2005:057 |
| Red Hat Enterprise Linux 4 | kdegraphics-7:3.3.1-3.3 | Fixed | RHSA-2005:066 |
| Red Hat Enterprise Linux 4 | tetex-0:2.0.2-22.EL4.4 | Fixed | RHSA-2005:026 |
| Red Hat Enterprise Linux 4 | xpdf-1:3.00-11.5 | Fixed | RHSA-2005:034 |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (32)
- ftp://ftp.foolabs.com/pub/xpdf/xpdf-3.00pl2.patch x_refsource_CONFIRM
- ftp://ftp.sco.com/pub/updates/OpenServer/SCOSA-2005.42/SCOSA-2005.42.txt vendor-advisoryx_refsource_SCO
- http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000921 vendor-advisoryx_refsource_CONECTIVA
- http://lists.grok.org.uk/pipermail/full-disclosure/2004-December/030241.html mailing-listx_refsource_FULLDISC
- http://marc.info/?t=110378596500001&r=1&w=2 mailing-listx_refsource_BUGTRAQ
- http://secunia.com/advisories/17277 third-party-advisoryx_refsource_SECUNIA
- http://securitytracker.com/id?1012646 vdb-entryx_refsource_SECTRACK
- http://www.gentoo.org/security/en/glsa/glsa-200412-25.xml vendor-advisoryx_refsource_GENTOO
- http://www.gentoo.org/security/en/glsa/glsa-200501-13.xml vendor-advisoryx_refsource_GENTOO
- http://www.gentoo.org/security/en/glsa/glsa-200501-17.xml vendor-advisoryx_refsource_GENTOO
- http://www.idefense.com/application/poi/display?id=172&type=vulnerabilities third-party-advisoryx_refsource_IDEFENSE
- http://www.kde.org/info/security/advisory-20041223-1.txt x_refsource_CONFIRM
- http://www.novell.com/linux/security/advisories/2005_01_sr.html vendor-advisoryx_refsource_SUSE
- http://www.redhat.com/support/errata/RHSA-2005-013.html vendor-advisoryx_refsource_REDHAT
- http://www.redhat.com/support/errata/RHSA-2005-018.html vendor-advisoryx_refsource_REDHAT
- http://www.redhat.com/support/errata/RHSA-2005-026.html vendor-advisoryx_refsource_REDHAT
- http://www.redhat.com/support/errata/RHSA-2005-034.html vendor-advisoryx_refsource_REDHAT
- http://www.redhat.com/support/errata/RHSA-2005-053.html vendor-advisoryx_refsource_REDHAT
- http://www.redhat.com/support/errata/RHSA-2005-057.html vendor-advisoryx_refsource_REDHAT
- http://www.redhat.com/support/errata/RHSA-2005-066.html vendor-advisoryx_refsource_REDHAT
- http://www.redhat.com/support/errata/RHSA-2005-354.html vendor-advisoryx_refsource_REDHAT
- http://www.securityfocus.com/bid/12070 vdb-entryx_refsource_BIDPatchVendor Advisory
- https://access.redhat.com/security/cve/CVE-2004-1125 Vendor Advisory
- https://bugzilla.fedora.us/show_bug.cgi?id=2352 vendor-advisoryx_refsource_FEDORA
- https://bugzilla.fedora.us/show_bug.cgi?id=2353 vendor-advisoryx_refsource_FEDORA
- https://bugzilla.redhat.com/show_bug.cgi?id=1617371 Issue Tracking
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2004-1123 Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/18641 vdb-entryx_refsource_XF
- https://nvd.nist.gov/vuln/detail/CVE-2004-1125
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10830 vdb-entrysignaturex_refsource_OVAL
- https://usn.ubuntu.com/50-1/ vendor-advisoryx_refsource_UBUNTU
- https://www.cve.org/CVERecord?id=CVE-2004-1125
Change history (0)
No recorded changes yet.
CVE.org / MITRE
CISA Vulnrichment
No data
GitHub
No data