Перейти к содержимому
Noroxi

Записи Xpdf

26 опубликованных записей вендора xpdf.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
17
С записью об исправлении
92,3 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Записи по годам

    Столбик: всего · тёмная часть: CISA KEV.

    Повторяющиеся классы

    Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.

    CWE

    Все записи

    26 записей
    • CVE-2004-0888
      43В плане

      Multiple integer overflows in xpdf 2.0 and 3.0, and other packages that use xpdf code such as CUPS, gpdf, and kdegraphics, allow remote atta

      КритическаяCVSS 10,0Эксплойта нетEPSS 10 %

      kde · koffice27 янв. 2005 г.

    • CVE-2003-0434
      42В плане

      Various PDF viewers including (1) Adobe Acrobat 5.06 and (2) Xpdf 1.01 allow remote attackers to execute arbitrary commands via shell metach

      ВысокаяCVSS 7,5Proof of conceptEPSS 41 %

      adobe · acrobat24 июл. 2003 г.

    • CVE-2004-0889
      42В плане

      Multiple integer overflows in xpdf 3.0, and other packages that use xpdf code such as CUPS, allow remote attackers to cause a denial of serv

      КритическаяCVSS 10,0Эксплойта нетEPSS 6 %

      xpdf · xpdf27 янв. 2005 г.

    • CVE-2005-3625
      41В плане

      Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial

      КритическаяCVSS 10,0Эксплойта нетEPSS 4 %

      libextractor · libextractor31 дек. 2005 г.

    • CVE-2004-1125
      39Наблюдать

      Buffer overflow in the Gfx::doImage function in Gfx.cc for xpdf 3.00, and other products that share code such as tetex-bin and kpdf in KDE 3

      КритическаяCVSS 9,3Эксплойта нетEPSS 7 %

      xpdf · xpdf10 янв. 2005 г.

    • CVE-2007-5393
      39Наблюдать

      Heap-based buffer overflow in the CCITTFaxStream::lookChar method in xpdf/Stream.cc in Xpdf 3.02p11 allows remote attackers to execute arbit

      КритическаяCVSS 9,3Эксплойта нетEPSS 6 %

      xpdf · xpdf7 нояб. 2007 г.

    • CVE-2007-5392
      39Наблюдать

      Integer overflow in the DCTStream::reset method in xpdf/Stream.cc in Xpdf 3.02p11 allows remote attackers to execute arbitrary code via a cr

      КритическаяCVSS 9,3Эксплойта нетEPSS 6 %

      xpdf · xpdf7 нояб. 2007 г.

    • CVE-2009-4035
      38Наблюдать

      The FoFiType1::parse function in fofi/FoFiType1.cc in Xpdf 3.0.0, gpdf 2.8.2, kpdf in kdegraphics 3.3.1, and possibly other libraries and ve

      КритическаяCVSS 9,3Эксплойта нетEPSS 4 %

      kde · kdegraphics21 дек. 2009 г.

    • CVE-2005-0064
      32Наблюдать

      Buffer overflow in the Decrypt::makeFileKey2 function in Decrypt.cc for xpdf 3.00 and earlier allows remote attackers to execute arbitrary c

      ВысокаяCVSS 7,5Эксплойта нетEPSS 7 %

      xpdf · xpdf2 мая 2005 г.

    • CVE-2007-4352
      32Наблюдать

      Array index error in the DCTStream::readProgressiveDataUnit method in xpdf/Stream.cc in Xpdf 3.02pl1, as used in poppler, teTeX, KDE, KOffic

      ВысокаяCVSS 7,6Эксплойта нетEPSS 7 %

      xpdf · xpdf7 нояб. 2007 г.

    • CVE-2005-3192
      32Наблюдать

      Heap-based buffer overflow in the StreamPredictor function in Xpdf 3.01, as used in products such as (1) Poppler, (2) teTeX, (3) KDE kpdf, a

      ВысокаяCVSS 7,5Эксплойта нетEPSS 6 %

      xpdf · xpdf7 дек. 2005 г.

    • CVE-2005-3627
      32Наблюдать

      Stream.cc in Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to mo

      ВысокаяCVSS 7,5Эксплойта нетEPSS 6 %

      xpdf · xpdf31 дек. 2005 г.

    • CVE-2006-0301
      31Наблюдать

      Heap-based buffer overflow in Splash.cc in xpdf, as used in other products such as (1) poppler, (2) kdegraphics, (3) gpdf, (4) pdfkit.framew

      ВысокаяCVSS 7,5Эксплойта нетEPSS 5 %

      xpdf · xpdf30 янв. 2006 г.

    • CVE-2005-3628
      31Наблюдать

      Buffer overflow in the JBIG2Bitmap::JBIG2Bitmap function in JBIG2Stream.cc in Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppl

      ВысокаяCVSS 7,5Эксплойта нетEPSS 4 %

      xpdf · xpdf31 дек. 2005 г.

    • CVE-2006-0746
      31Наблюдать

      Certain patches for kpdf do not include all relevant patches from xpdf that were associated with CVE-2005-3627, which allows context-depende

      ВысокаяCVSS 7,5Эксплойта нетEPSS 3 %

      xpdf · xpdf8 мар. 2006 г.

    • CVE-2005-0206
      31Наблюдать

      The patch for integer overflow vulnerabilities in Xpdf 2.0 and 3.0 (CVE-2004-0888) is incomplete for 64-bit architectures on certain Linux d

      ВысокаяCVSS 7,5Эксплойта нетEPSS 3 %

      xpdf · xpdf27 апр. 2005 г.

    • CVE-2000-0727
      31Наблюдать

      xpdf PDF viewer client earlier than 0.91 does not properly launch a web browser for embedded URL's, which allows an attacker to execute arbi

      ВысокаяCVSS 7,6Эксплойта нетEPSS 3 %

      xpdf · xpdf20 окт. 2000 г.

    • CVE-2006-1244
      31Наблюдать

      Unspecified vulnerability in certain versions of xpdf after 3.00, as used in various products including (a) pdfkit.framework, (b) gpdf, (c)

      ВысокаяCVSS 7,6Эксплойта нетEPSS 2 %

      xpdf · xpdf15 мар. 2006 г.

    • CVE-2007-0104
      29Наблюдать

      The Adobe PDF specification 1.3, as implemented by (a) xpdf 3.0.1 patch 2, (b) kpdf in KDE before 3.5.5, (c) poppler before 0.5.4, and other

      СредняяCVSS 6,8Эксплойта нетEPSS 6 %

      xpdf · xpdf8 янв. 2007 г.

    • CVE-2002-1384
      28Наблюдать

      Integer overflow in pdftops, as used in Xpdf 2.01 and earlier, xpdf-i, and CUPS before 1.1.18, allows local users to execute arbitrary code

      ВысокаяCVSS 7,2Эксплойта нетEPSS 1 %

      xpdf · xpdf2 янв. 2003 г.

    • CVE-2000-0728
      28Наблюдать

      xpdf PDF viewer client earlier than 0.91 allows local users to overwrite arbitrary files via a symlink attack.

      ВысокаяCVSS 7,2Эксплойта нетEPSS 0 %

      xpdf · xpdf20 окт. 2000 г.

    • CVE-2005-3193
      21Наблюдать

      Heap-based buffer overflow in the JPXStream::readCodestream function in the JPX stream parsing code (JPXStream.c) for xpdf 3.01 and earlier,

      СредняяCVSS 5,1Эксплойта нетEPSS 4 %

      xpdf · xpdf6 дек. 2005 г.

    • CVE-2005-3191
      21Наблюдать

      Multiple heap-based buffer overflows in the (1) DCTStream::readProgressiveSOF and (2) DCTStream::readBaselineSOF functions in the DCT stream

      СредняяCVSS 5,1Эксплойта нетEPSS 4 %

      xpdf · xpdf6 дек. 2005 г.

    • CVE-2005-3626
      21Наблюдать

      Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial

      СредняяCVSS 5,0Эксплойта нетEPSS 3 %

      libextractor · libextractor31 дек. 2005 г.

    • CVE-2005-3624
      21Наблюдать

      The CCITTFaxStream::CCITTFaxStream function in Stream.cc for xpdf, gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others all

      СредняяCVSS 5,0Эксплойта нетEPSS 2 %

      libextractor · libextractor31 дек. 2005 г.