Back

HIGH

xpdf/poppler: Splash:: drawImage integer overflow and missing allocation return value check

Published Oct 21, 2009

Description

The Splash::drawImage function in Splash.cc in Xpdf 2.x and 3.x before 3.02pl4, and Poppler 0.x, as used in GPdf and kdegraphics KPDF, does not properly allocate memory, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PDF document that triggers a NULL pointer dereference or a heap-based buffer overflow.

Affected products

Remediation

No remediation recorded yet.

Metrics

References (49)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner redhat
Published Oct 21, 2009
Updated Aug 7, 2024
Reserved Oct 9, 2009
NVD
Status Modified
Modified Jun 16, 2026
Red Hat
Severity Important
Public date Oct 14, 2009