xpdf

Page content
  • Author: Miklos Vajna
  • Vulnerable: 3.02-5
  • Unaffected: 3.02-6anacreon1

Some vulnerabilities have been reported in Xpdf, which can be exploited by malicious people to potentially compromise a user’s system.

  1. A boundary error exists when decoding JBIG2 symbol dictionary segments. This can be exploited to cause a heap-based buffer overflow and potentially execute arbitrary code.
  2. Multiple integer overflows in the JBIG2 decoder can be exploited to potentially execute arbitrary code.
  3. Multiple boundary errors in the JBIG2 decoder can be exploited to cause buffer overflows and potentially execute arbitrary code.
  4. Multiple errors in the JBIG2 decoder can be exploited can be exploited to free arbitrary memory and potentially execute arbitrary code.
  5. Multiple unspecified input validation errors in the JBIG2 decoder can be exploited to potentially execute arbitrary code. NOTE: Additionally, various other JBIG2 processing errors can be exploited to cause crashes.

CVEs: