VDB

CVE-2005-3624

CVE-2005-3624 PUBLISHED

Reported by redhat · Published January 6, 2006

The CCITTFaxStream::CCITTFaxStream function in Stream.cc for xpdf, gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others allows attackers to corrupt the heap via negative or large integers in a CCITTFaxDecode stream, which lead to integer overflows and integer underflows.

Affected Products

VendorProductVersions
n/an/an/a
n/an/an/a, n/a, *

Exploit Intelligence

Timeline

  • Dec 31, 2005 CVE Published
  • Feb 4, 2022 EPSS Score
  • Mar 29, 2022 EPSS Score
  • May 20, 2022 EPSS Score
  • Sep 4, 2022 EPSS Score
  • Oct 26, 2022 EPSS Score
  • Dec 18, 2022 EPSS Score
  • Feb 9, 2023 EPSS Score
  • Mar 7, 2023 EPSS Score
  • Apr 3, 2023 EPSS Score
  • Jul 17, 2023 EPSS Score
  • Sep 8, 2023 EPSS Score

References

  • 16143 vdb-entryx_refsource_BID
  • DSA-932 vendor-advisoryx_refsource_DEBIAN
  • 18349 third-party-advisoryx_refsource_SECUNIA
  • 18147 third-party-advisoryx_refsource_SECUNIA
  • SCOSA-2006.15 vendor-advisoryx_refsource_SCO
  • x_refsource_MISC
  • x_refsource_CONFIRM
  • 18679 third-party-advisoryx_refsource_SECUNIA
  • 18312 third-party-advisoryx_refsource_SECUNIA
  • 18644 third-party-advisoryx_refsource_SECUNIA
  • USN-236-1 vendor-advisoryx_refsource_UBUNTU
  • 18425 third-party-advisoryx_refsource_SECUNIA
  • 18373 third-party-advisoryx_refsource_SECUNIA
  • 18303 third-party-advisoryx_refsource_SECUNIA
  • DSA-931 vendor-advisoryx_refsource_DEBIAN
  • 18554 third-party-advisoryx_refsource_SECUNIA
  • MDKSA-2006:003 vendor-advisoryx_refsource_MANDRIVA
  • 19230 third-party-advisoryx_refsource_SECUNIA
  • 102972 vendor-advisoryx_refsource_SUNALERT
  • MDKSA-2006:012 vendor-advisoryx_refsource_MANDRIVA

…and 62 more

Open in Interactive Console →
$ Console Community · 100/wk Open console ›