6.9
CVSSv2

CVE-2009-1144

Published: 09/04/2009 Updated: 06/03/2019
CVSS v2 Base Score: 6.9 | Impact Score: 10 | Exploitability Score: 3.4
VMScore: 614
Vector: AV:L/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Untrusted search path vulnerability in the Gentoo package of Xpdf prior to 3.02-r2 allows local users to gain privileges via a Trojan horse xpdfrc file in the current working directory, related to an unset SYSTEM_XPDFRC macro in a Gentoo build process that uses the poppler library.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

glyphandcog xpdfreader 2.03

glyphandcog xpdfreader 2.02

foolabs xpdf 0.93b

foolabs xpdf 0.93a

glyphandcog xpdfreader 0.91

foolabs xpdf 0.91c

foolabs xpdf 0.91b

foolabs xpdf 0.5a

glyphandcog xpdfreader 0.5

glyphandcog xpdfreader 2.01

glyphandcog xpdfreader 2.00

glyphandcog xpdfreader 0.93

foolabs xpdf 0.92e

foolabs xpdf 0.91a

glyphandcog xpdfreader 0.90

glyphandcog xpdfreader 0.4

glyphandcog xpdfreader 0.3

glyphandcog xpdfreader 1.01

glyphandcog xpdfreader 1.00

foolabs xpdf 0.92d

foolabs xpdf 0.92c

glyphandcog xpdfreader 0.80

foolabs xpdf 0.7a

glyphandcog xpdfreader 0.2

glyphandcog xpdfreader

glyphandcog xpdfreader 3.00

foolabs xpdf 1.00a

foolabs xpdf 0.93c

foolabs xpdf 0.92b

foolabs xpdf 0.92a

glyphandcog xpdfreader 0.7

glyphandcog xpdfreader 0.6