Search CVE reports


Toggle filters

151 – 160 of 203 results


CVE-2013-1789

Low priority

Some fixes available 4 of 5

splash/Splash.cc in poppler before 0.22.1 allows context-dependent attackers to cause a denial of service (NULL pointer dereference and crash) via vectors related to the (1) Splash::arbitraryTransformMask, (2) Splash::blitMask,...

1 affected package

poppler

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
poppler
Show less packages

CVE-2013-1788

Medium priority

Some fixes available 4 of 5

poppler before 0.22.1 allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via vectors that trigger an "invalid memory access" in (1) splash/Splash.cc,...

1 affected package

poppler

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
poppler
Show less packages

CVE-2012-2142

Low priority
Ignored

The error function in Error.cc in poppler before 0.21.4 allows remote attackers to execute arbitrary commands via a PDF containing an escape sequence for a terminal emulator.

2 affected packages

xpdf, poppler

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
xpdf
poppler
Show less packages

CVE-2010-5110

Low priority
Ignored

DCTStream.cc in Poppler before 0.13.3 allows remote attackers to cause a denial of service (crash) via a crafted PDF file.

1 affected package

poppler

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
poppler
Show less packages

CVE-2010-4654

Medium priority
Needs evaluation

poppler before 0.16.3 has malformed commands that may cause corruption of the internal stack.

5 affected packages

koffice, ipe, libextractor, poppler, xpdf

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
koffice Not in release Not in release Not in release Not in release
ipe Needs evaluation Needs evaluation Needs evaluation Needs evaluation
libextractor Not affected Not affected Not affected Not affected
poppler Not affected Not affected Not affected Not affected
xpdf Not affected Not affected Not in release Not affected
Show less packages

CVE-2010-4653

Low priority
Ignored

An integer overflow condition in poppler before 0.16.3 can occur when parsing CharCodes for fonts.

5 affected packages

ipe, koffice, libextractor, poppler, xpdf

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ipe Not affected Not affected
koffice Not in release Not in release
libextractor Not affected Not affected
poppler Not affected Not affected
xpdf Not in release Not affected
Show less packages

CVE-2010-3704

Medium priority

Some fixes available 9 of 76

The FoFiType1::parse function in fofi/FoFiType1.cc in the PDF parser in xpdf before 3.02pl5, poppler 0.8.7 and possibly other versions up to 0.15.1, kdegraphics, and possibly other products allows context-dependent attackers to...

11 affected packages

gpdf, ipe, koffice, poppler, kdegraphics...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gpdf Not in release Not in release Not in release Not in release
ipe Needs evaluation Needs evaluation Needs evaluation Needs evaluation
koffice Not in release Not in release Not in release Not in release
poppler Not affected Not affected Not affected Not affected
kdegraphics Not in release Not in release Not in release Not in release
libextractor Not affected Not affected Not affected Not affected
pdfkit.framework Not in release Not in release Not in release Not in release
pdftohtml Not in release Not in release Not in release Not in release
tetex-bin Not in release Not in release Not in release Not in release
texlive-bin Not affected Not affected Not affected Not affected
xpdf Not affected Not affected Not in release Not affected
Show all 11 packages Show less packages

CVE-2010-3703

Medium priority

Some fixes available 4 of 73

The PostScriptFunction::PostScriptFunction function in poppler/Function.cc in the PDF parser in poppler 0.8.7 and possibly other versions up to 0.15.1, and possibly other products, allows context-dependent attackers to cause a...

11 affected packages

kdegraphics, gpdf, ipe, pdfkit.framework, libextractor...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
kdegraphics Not in release Not in release Not in release Not in release
gpdf Not in release Not in release Not in release Not in release
ipe Needs evaluation Needs evaluation Needs evaluation Needs evaluation
pdfkit.framework Not in release Not in release Not in release Not in release
libextractor Not affected Not affected Not affected Not affected
koffice Not in release Not in release Not in release Not in release
pdftohtml Not in release Not in release Not in release Not in release
poppler Not affected Not affected Not affected Not affected
tetex-bin Not in release Not in release Not in release Not in release
texlive-bin Not affected Not affected Not affected Not affected
xpdf Not affected Not affected Not in release Not affected
Show all 11 packages Show less packages

CVE-2010-3702

Medium priority

Some fixes available 9 of 76

The Gfx::getPos function in the PDF parser in xpdf before 3.02pl5, poppler 0.8.7 and possibly other versions up to 0.15.1, CUPS, kdegraphics, and possibly other products allows context-dependent attackers to cause a denial of...

11 affected packages

koffice, gpdf, ipe, poppler, tetex-bin...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
koffice Not in release Not in release Not in release Not in release
gpdf Not in release Not in release Not in release Not in release
ipe Needs evaluation Needs evaluation Needs evaluation Needs evaluation
poppler Not affected Not affected Not affected Not affected
tetex-bin Not in release Not in release Not in release Not in release
texlive-bin Not affected Not affected Not affected Not affected
kdegraphics Not in release Not in release Not in release Not in release
pdfkit.framework Not in release Not in release Not in release Not in release
pdftohtml Not in release Not in release Not in release Not in release
libextractor Not affected Not affected Not affected Not affected
xpdf Not affected Not affected Not in release Not affected
Show all 11 packages Show less packages

CVE-2010-0207

Negligible priority
Ignored

In xpdf, the xref table contains an infinite loop which allows remote attackers to cause a denial of service (application crash) in xpdf-based PDF viewers.

6 affected packages

koffice, libextractor, poppler, xpdf, ipe, kdegraphics

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
koffice
libextractor
poppler
xpdf
ipe
kdegraphics
Show less packages