CVSS2
Attack Vector
NETWORK
Attack Complexity
MEDIUM
Authentication
NONE
Confidentiality Impact
PARTIAL
Integrity Impact
PARTIAL
Availability Impact
PARTIAL
AV:N/AC:M/Au:N/C:P/I:P/A:P
AI Score
Confidence
Low
EPSS
Percentile
93.9%
The poppler PDF loader library did not limit the recursion depth of
the page model tree. By tricking a user into opening a specially
crafter PDF file, this could be exploited to trigger an infinite loop
and eventually crash an application that uses this library.
kpdf in Ubuntu 5.10, and KOffice in all Ubuntu releases contains a
copy of this code and thus is affected as well.
OS | Version | Architecture | Package | Version | Filename |
---|---|---|---|---|---|
Ubuntu | 6.10 | noarch | libpoppler1 | <Β 0.5.4-0ubuntu4.1 | UNKNOWN |
Ubuntu | 6.10 | noarch | kword | <Β 1:1.5.2-0ubuntu2.1 | UNKNOWN |
Ubuntu | 6.06 | noarch | libpoppler1 | <Β 0.5.1-0ubuntu7.1 | UNKNOWN |
Ubuntu | 6.06 | noarch | kword | <Β 1:1.5.0-0ubuntu9.1 | UNKNOWN |
Ubuntu | 5.10 | noarch | kpdf | <Β 4:3.4.3-0ubuntu2.6 | UNKNOWN |
Ubuntu | 5.10 | noarch | kword | <Β 1:1.4.1-0ubuntu7.5 | UNKNOWN |
Ubuntu | 5.10 | noarch | libpoppler0c2 | <Β 0.4.2-0ubuntu6.8 | UNKNOWN |