Integer overflow in pdftops, as used in Xpdf 2.01 and previous versions, xpdf-i, and CUPS prior to 1.1.18, allows local users to execute arbitrary code via a ColorSpace entry with a large number of elements, as demonstrated by cups-pdf.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
easy software products cups 1.0.4 |
||
easy software products cups 1.1.4 |
||
easy software products cups 1.1.4_2 |
||
xpdf xpdf 1.0a |
||
xpdf xpdf 1.1 |
||
easy software products cups 1.0.4_8 |
||
easy software products cups 1.1.1 |
||
easy software products cups 1.1.4_3 |
||
easy software products cups 1.1.4_5 |
||
xpdf xpdf 2.0 |
||
xpdf xpdf 2.1 |
||
easy software products cups 1.1.10 |
||
easy software products cups 1.1.13 |
||
easy software products cups 1.1.6 |
||
easy software products cups 1.1.7 |
||
xpdf xpdf 0.90 |
||
easy software products cups 1.1.14 |
||
easy software products cups 1.1.17 |
||
xpdf xpdf 0.91 |
||
xpdf xpdf 1.0 |