Lucene search

K
ubuntucveUbuntu.comUB:CVE-2007-0104
HistoryJan 09, 2007 - 12:00 a.m.

CVE-2007-0104

2007-01-0900:00:00
ubuntu.com
ubuntu.com
25

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

EPSS

0.068

Percentile

93.9%

The Adobe PDF specification 1.3, as implemented by (a) xpdf 3.0.1 patch 2,
(b) kpdf in KDE before 3.5.5, Β© poppler before 0.5.4, and other products,
allows remote attackers to have an unknown impact, possibly including
denial of service (infinite loop), arbitrary code execution, or memory
corruption, via a PDF file with a (1) crafted catalog dictionary or (2) a
crafted Pages attribute that references an invalid page tree node.

OSVersionArchitecturePackageVersionFilename
ubuntu6.06noarchkoffice<Β 1.5.0-0ubuntu9.2UNKNOWN
ubuntu6.10noarchkoffice<Β 1.5.2-0ubuntu2.2UNKNOWN
ubuntu7.04noarchkoffice<Β 1.6.2-0ubuntu1.1UNKNOWN
ubuntu6.06noarchpoppler<Β 0.5.1-0ubuntu7.2UNKNOWN
ubuntu6.10noarchpoppler<Β 0.5.4-0ubuntu4.2UNKNOWN
ubuntu7.04noarchpoppler<Β 0.5.4-0ubuntu8.1UNKNOWN
ubuntu6.06noarchxpdf<Β 3.01-7ubuntu0.1UNKNOWN
ubuntu6.10noarchxpdf<Β 3.01-9ubuntu1.1UNKNOWN
ubuntu7.04noarchxpdf<Β 3.01-9ubuntu3UNKNOWN

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

EPSS

0.068

Percentile

93.9%