10
CVSSv2

CVE-2004-0888

Published: 27/01/2005 Updated: 11/10/2017
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Multiple integer overflows in xpdf 2.0 and 3.0, and other packages that use xpdf code such as CUPS, gpdf, and kdegraphics, allow remote malicious users to cause a denial of service (crash) and possibly execute arbitrary code, a different set of vulnerabilities than those identified by CVE-2004-0889.

Vulnerable Product Search on Vulmon Subscribe to Product

easy software products cups 1.1.10

easy software products cups 1.1.12

easy software products cups 1.1.19

easy software products cups 1.1.19_rc5

gnome gpdf 0.112

gnome gpdf 0.131

kde koffice 1.3_beta3

kde kpdf 3.2

pdftohtml pdftohtml 0.36

tetex tetex 1.0.7

xpdf xpdf 1.0

xpdf xpdf 1.0a

easy software products cups 1.0.4

easy software products cups 1.1.15

easy software products cups 1.1.16

easy software products cups 1.1.4_2

easy software products cups 1.1.4_3

kde koffice 1.3.2

kde koffice 1.3.3

pdftohtml pdftohtml 0.33

pdftohtml pdftohtml 0.33a

tetex tetex 2.0.2

xpdf xpdf 0.90

xpdf xpdf 0.91

xpdf xpdf 2.1

xpdf xpdf 2.3

easy software products cups 1.1.13

easy software products cups 1.1.14

easy software products cups 1.1.20

easy software products cups 1.1.4

kde koffice 1.3

kde koffice 1.3.1

pdftohtml pdftohtml 0.32a

pdftohtml pdftohtml 0.32b

tetex tetex 2.0

tetex tetex 2.0.1

xpdf xpdf 1.1

xpdf xpdf 2.0

easy software products cups 1.0.4_8

easy software products cups 1.1.1

easy software products cups 1.1.17

easy software products cups 1.1.18

easy software products cups 1.1.4_5

easy software products cups 1.1.6

easy software products cups 1.1.7

kde koffice 1.3_beta1

kde koffice 1.3_beta2

pdftohtml pdftohtml 0.34

pdftohtml pdftohtml 0.35

xpdf xpdf 0.92

xpdf xpdf 0.93

xpdf xpdf 3.0

debian debian linux 3.0

kde kde 3.3

kde kde 3.3.1

redhat enterprise linux 3.0

suse suse linux 8.1

suse suse linux 8.2

gentoo linux

kde kde 3.2

kde kde 3.2.1

redhat enterprise linux 2.1

redhat fedora core core_2.0

redhat linux advanced workstation 2.1

suse suse linux 9.2

ubuntu ubuntu linux 4.1

redhat enterprise linux desktop 3.0

suse suse linux 9.0

suse suse linux 9.1

kde kde 3.2.2

kde kde 3.2.3

suse suse linux 8.0

Vendor Advisories

Markus Meissner discovered even more integer overflow vulnerabilities in xpdf, a viewer for PDF files These integer overflows can eventually lead to buffer overflows ...
Synopsis xpdf security update Type/Severity Security Advisory: Important Topic An updated xpdf package that fixes a number of integer overflow securityflaws is now available Description Xpdf is an X Window System based viewer for Portable Document Format(PDF) filesDuring a source code aud ...
Synopsis kdegraphics security update Type/Severity Security Advisory: Important Topic Updated kdegraphics packages that resolve security issues in kpdf are nowavailableThis update has been rated as having important security impact by the Red HatSecurity Response Team Description The kdegr ...
Synopsis tetex security update Type/Severity Security Advisory: Moderate Topic Updated tetex packages that fix several integer overflows are now availableThis update has been rated as having moderate security impact by the RedHat Security Response Team Description TeTeX is an implementati ...
Synopsis cups security update Type/Severity Security Advisory: Important Topic Updated cups packages that fix denial of service issues, a securityinformation leak, as well as other various bugs are now available Description The Common UNIX Printing System (CUPS) is a print spoolerDuring a ...
Chris Evans discovered several integer overflows in xpdf, that are also present in CUPS, the Common UNIX Printing System, which can be exploited remotely by a specially crafted PDF document For the stable distribution (woody) these problems have been fixed in version 1114-5woody10 For the unstable distribution (sid) these problems have been fix ...
Chris Evans discovered several integer overflows in xpdf, that are also present in tetex-bin, binary files for the teTeX distribution, which can be exploited remotely by a specially crafted PDF document and lead to the execution of arbitrary code For the stable distribution (woody) these problems have been fixed in version 20011202-73 For the un ...
Chris Evans discovered several integer overflows in xpdf, a viewer for PDF files, which can be exploited remotely by a specially crafted PDF document and lead to the execution of arbitrary code For the stable distribution (woody) these problems have been fixed in version 100-32 For the unstable distribution (sid) these problems have been fixed ...