Back

MEDIUM

xpdf/poppler: ImageStream:: ImageStream integer overflow

Published Oct 21, 2009

Description

Integer overflow in the ImageStream::ImageStream function in Stream.cc in Xpdf before 3.02pl4 and Poppler before 0.12.1, as used in GPdf, kdegraphics KPDF, and CUPS pdftops, allows remote attackers to cause a denial of service (application crash) via a crafted PDF document that triggers a NULL pointer dereference or buffer over-read.

Affected products

Remediation

No remediation recorded yet.

Metrics

References (54)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner redhat
Published Oct 21, 2009
Updated Aug 7, 2024
Reserved Oct 9, 2009
NVD
Status Modified
Modified Jun 16, 2026
Red Hat
Severity Low
Public date Oct 14, 2009