Lucene search

K
ubuntucveUbuntu.comUB:CVE-2005-3193
HistoryDec 07, 2005 - 12:00 a.m.

CVE-2005-3193

2005-12-0700:00:00
ubuntu.com
ubuntu.com
16

5.1 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:H/Au:N/C:P/I:P/A:P

0.007 Low

EPSS

Percentile

79.9%

Heap-based buffer overflow in the JPXStream::readCodestream function in the
JPX stream parsing code (JPXStream.c) for xpdf 3.01 and earlier, as used in
products such as (1) Poppler, (2) teTeX, (3) KDE kpdf, (4) CUPS, and (5)
libextractor allows user-assisted attackers to cause a denial of service
(heap corruption) and possibly execute arbitrary code via a crafted PDF
file with large size values that cause insufficient memory to be allocated.

Rows per page:
1-10 of 181

5.1 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:H/Au:N/C:P/I:P/A:P

0.007 Low

EPSS

Percentile

79.9%