Lucene search

K
ubuntucveUbuntu.comUB:CVE-2005-2097
HistoryAug 16, 2005 - 12:00 a.m.

CVE-2005-2097

2005-08-1600:00:00
ubuntu.com
ubuntu.com
11

CVSS2

2.1

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:N/I:N/A:P

EPSS

0.001

Percentile

28.4%

xpdf and kpdf do not properly validate the “loca” table in PDF files, which
allows local users to cause a denial of service (disk consumption and hang)
via a PDF file with a “broken” loca table, which causes a large temporary
file to be created when xpdf attempts to reconstruct the information.

OSVersionArchitecturePackageVersionFilename
ubuntu8.10noarchcups< 1.3.2-1ubuntu1UNKNOWN
ubuntu9.04noarchcups< 1.3.2-1ubuntu1UNKNOWN
ubuntu9.10noarchcups< 1.3.2-1ubuntu1UNKNOWN
ubuntu7.10noarchcupsys< 1.3.2-1ubuntu1UNKNOWN
ubuntu8.04noarchcupsys< 1.3.2-1ubuntu1UNKNOWN
ubuntu6.10noarchgpdf< 2.10.0-4UNKNOWN
ubuntu6.06noarchpoppler< 0.5.1-0ubuntu7.2UNKNOWN
ubuntu6.10noarchpoppler< 0.5.4-0ubuntu4.2UNKNOWN
ubuntu7.04noarchpoppler< 0.5.4-0ubuntu8.1UNKNOWN
ubuntu7.10noarchpoppler< 0.6-0ubuntu1UNKNOWN
Rows per page:
1-10 of 221

CVSS2

2.1

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:N/I:N/A:P

EPSS

0.001

Percentile

28.4%