H
eap-based buffer overflow in the StreamPredictor function in Xpdf 3.01, as used in products such as (1) Poppler, (2) teTeX, (3) KDE kpdf, and (4) pdftohtml, (5) KOffice KWord, (6) CUPS, and (7) libextractor allows remote attackers to execute arbitrary code via a PDF file with an out-of-range numComps (number of components) field.
References
Configurations
History
21 Nov 2024, 00:01
| Type | Values Removed | Values Added |
|---|---|---|
| References | () ftp://ftp.foolabs.com/pub/xpdf/xpdf-3.01pl1.patch - Patch | |
| References | () ftp://ftp.sco.com/pub/updates/OpenServer/SCOSA-2006.15/SCOSA-2006.15.txt - | |
| References | () ftp://ftp.sco.com/pub/updates/OpenServer/SCOSA-2006.20/SCOSA-2006.20.txt - | |
| References | () ftp://ftp.sco.com/pub/updates/UnixWare/SCOSA-2006.21/SCOSA-2006.21.txt - | |
| References | () ftp://patches.sgi.com/support/free/security/advisories/20051201-01-U - | |
| References | () ftp://patches.sgi.com/support/free/security/advisories/20060101-01-U - | |
| References | () ftp://patches.sgi.com/support/free/security/advisories/20060201-01-U - | |
| References | () http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=342289 - | |
| References | () http://lists.suse.com/archive/suse-security-announce/2006-Jan/0001.html - | |
| References | () http://rhn.redhat.com/errata/RHSA-2005-868.html - Vendor Advisory | |
| References | () http://scary.beasts.org/security/CESA-2005-003.txt - | |
| References | () http://secunia.com/advisories/17897/ - Patch, Vendor Advisory | |
| References | () http://secunia.com/advisories/17908 - Vendor Advisory | |
| References | () http://secunia.com/advisories/17912 - Vendor Advisory | |
| References | () http://secunia.com/advisories/17916 - Vendor Advisory | |
| References | () http://secunia.com/advisories/17920 - Vendor Advisory | |
| References | () http://secunia.com/advisories/17921 - Vendor Advisory | |
| References | () http://secunia.com/advisories/17926 - Vendor Advisory | |
| References | () http://secunia.com/advisories/17929 - Vendor Advisory | |
| References | () http://secunia.com/advisories/17940 - Vendor Advisory | |
| References | () http://secunia.com/advisories/17955 - | |
| References | () http://secunia.com/advisories/17976 - Vendor Advisory | |
| References | () http://secunia.com/advisories/18009 - Vendor Advisory | |
| References | () http://secunia.com/advisories/18055 - Vendor Advisory | |
| References | () http://secunia.com/advisories/18061 - Vendor Advisory | |
| References | () http://secunia.com/advisories/18189 - Vendor Advisory | |
| References | () http://secunia.com/advisories/18191 - Vendor Advisory | |
| References | () http://secunia.com/advisories/18192 - Vendor Advisory | |
| References | () http://secunia.com/advisories/18303 - | |
| References | () http://secunia.com/advisories/18313 - Vendor Advisory | |
| References | () http://secunia.com/advisories/18336 - Vendor Advisory | |
| References | () http://secunia.com/advisories/18349 - Vendor Advisory | |
| References | () http://secunia.com/advisories/18380 - | |
| References | () http://secunia.com/advisories/18385 - | |
| References | () http://secunia.com/advisories/18387 - Vendor Advisory | |
| References | () http://secunia.com/advisories/18389 - Vendor Advisory | |
| References | () http://secunia.com/advisories/18398 - | |
| References | () http://secunia.com/advisories/18407 - | |
| References | () http://secunia.com/advisories/18416 - Vendor Advisory | |
| References | () http://secunia.com/advisories/18428 - | |
| References | () http://secunia.com/advisories/18436 - | |
| References | () http://secunia.com/advisories/18448 - Vendor Advisory | |
| References | () http://secunia.com/advisories/18503 - | |
| References | () http://secunia.com/advisories/18517 - | |
| References | () http://secunia.com/advisories/18534 - | |
| References | () http://secunia.com/advisories/18549 - | |
| References | () http://secunia.com/advisories/18554 - | |
| References | () http://secunia.com/advisories/18582 - | |
| References | () http://secunia.com/advisories/18674 - | |
| References | () http://secunia.com/advisories/18675 - | |
| References | () http://secunia.com/advisories/18679 - | |
| References | () http://secunia.com/advisories/18908 - | |
| References | () http://secunia.com/advisories/18913 - | |
| References | () http://secunia.com/advisories/19230 - | |
| References | () http://secunia.com/advisories/19377 - | |
| References | () http://secunia.com/advisories/19797 - | |
| References | () http://secunia.com/advisories/19798 - | |
| References | () http://secunia.com/advisories/25729 - | |
| References | () http://secunia.com/advisories/26413 - | |
| References | () http://securityreason.com/securityalert/235 - | |
| References | () http://securityreason.com/securityalert/240 - | |
| References | () http://securitytracker.com/id?1015309 - | |
| References | () http://securitytracker.com/id?1015324 - | |
| References | () http://slackware.com/security/viewer.php?l=slackware-security&y=2006&m=slackware-security.472683 - | |
| References | () http://slackware.com/security/viewer.php?l=slackware-security&y=2006&m=slackware-security.474747 - | |
| References | () http://sunsolve.sun.com/search/document.do?assetkey=1-26-102972-1 - | |
| References | () http://www.debian.org/security/2005/dsa-931 - | |
| References | () http://www.debian.org/security/2005/dsa-932 - | |
| References | () http://www.debian.org/security/2006/dsa-936 - | |
| References | () http://www.debian.org/security/2006/dsa-937 - | |
| References | () http://www.debian.org/security/2006/dsa-950 - | |
| References | () http://www.debian.org/security/2006/dsa-961 - | |
| References | () http://www.debian.org/security/2006/dsa-962 - | |
| References | () http://www.gentoo.org/security/en/glsa/glsa-200512-08.xml - | |
| References | () http://www.gentoo.org/security/en/glsa/glsa-200601-02.xml - | |
| References | () http://www.idefense.com/application/poi/display?id=344&type=vulnerabilities - Patch, Vendor Advisory | |
| References | () http://www.kde.org/info/security/advisory-20051207-1.txt - | |
| References | () http://www.kde.org/info/security/advisory-20051207-2.txt - | |
| References | () http://www.mandriva.com/security/advisories?name=MDKSA-2006:003 - | |
| References | () http://www.mandriva.com/security/advisories?name=MDKSA-2006:004 - | |
| References | () http://www.mandriva.com/security/advisories?name=MDKSA-2006:005 - | |
| References | () http://www.mandriva.com/security/advisories?name=MDKSA-2006:006 - | |
| References | () http://www.mandriva.com/security/advisories?name=MDKSA-2006:008 - | |
| References | () http://www.mandriva.com/security/advisories?name=MDKSA-2006:010 - | |
| References | () http://www.mandriva.com/security/advisories?name=MDKSA-2006:011 - | |
| References | () http://www.novell.com/linux/security/advisories/2005_29_sr.html - | |
| References | () http://www.novell.com/linux/security/advisories/2006_02_sr.html - | |
| References | () http://www.redhat.com/archives/fedora-announce-list/2005-December/msg00015.html - | |
| References | () http://www.redhat.com/archives/fedora-announce-list/2005-December/msg00016.html - | |
| References | () http://www.redhat.com/archives/fedora-announce-list/2005-December/msg00036.html - | |
| References | () http://www.redhat.com/archives/fedora-announce-list/2005-December/msg00037.html - | |
| References | () http://www.redhat.com/support/errata/RHSA-2005-840.html - Patch, Vendor Advisory | |
| References | () http://www.redhat.com/support/errata/RHSA-2005-867.html - Vendor Advisory | |
| References | () http://www.redhat.com/support/errata/RHSA-2005-878.html - Vendor Advisory | |
| References | () http://www.redhat.com/support/errata/RHSA-2006-0160.html - | |
| References | () http://www.securityfocus.com/archive/1/418883/100/0/threaded - | |
| References | () http://www.securityfocus.com/archive/1/427053/100/0/threaded - | |
| References | () http://www.securityfocus.com/archive/1/427990/100/0/threaded - | |
| References | () http://www.securityfocus.com/bid/15725 - Patch | |
| References | () http://www.trustix.org/errata/2005/0072/ - | |
| References | () http://www.ubuntulinux.org/usn/usn-227-1 - | |
| References | () http://www.vupen.com/english/advisories/2005/2755 - | |
| References | () http://www.vupen.com/english/advisories/2005/2786 - | |
| References | () http://www.vupen.com/english/advisories/2005/2787 - | |
| References | () http://www.vupen.com/english/advisories/2005/2788 - | |
| References | () http://www.vupen.com/english/advisories/2005/2789 - | |
| References | () http://www.vupen.com/english/advisories/2005/2790 - | |
| References | () http://www.vupen.com/english/advisories/2005/2856 - | |
| References | () http://www.vupen.com/english/advisories/2007/2280 - | |
| References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/23442 - | |
| References | () https://issues.rpath.com/browse/RPL-1609 - | |
| References | () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10914 - |
Information
Published : 2005-12-08 01:03
Updated : 2025-04-03 01:03
NVD link : CVE-2005-3192
Mitre link : CVE-2005-3192
CVE.ORG link : CVE-2005-3192
JSON object : View
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer