CVE-2005-3626 PUBLISHED CVSS 5 MEDIUM

Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial of service (crash) via a crafted FlateDecode stream that triggers a null dereference.

EPSS 9.33% · 92.7th percentile

Risk Scores

CVSS v2.0
5
EPSS Score
9.33%
92.7th percentile

Affected Products

VendorProductVersions
trustixsecure_linux2.0, 2.2, 3.0
turbolinuxturbolinux_multimedia
redhatenterprise_linux2.1, 4.0, 4.0
kdekdegraphics3.4.3, 3.2
tetextetex2.0.1, 2.0.2, 3.0
easy_software_productscups1.1.22_rc1, 1.1.23_rc1, 1.1.22
libextractorlibextractor
slackwareslackware_linux10.1, 9.0, 10.2
popplerpoppler0.4.2
redhatfedora_corecore_1.0, core_4.0, core_3.0
scoopenserver5.0.7, 6.0
turbolinuxturbolinux_home
redhatenterprise_linux_desktop3.0, 4.0
turbolinuxturbolinux_personal
mandrakesoftmandrake_linux10.2, 10.1, 10.1
mandrakesoftmandrake_linux_corporate_server3.0, 2.1, 3.0
turbolinuxturbolinux10, fuji
debiandebian_linux3.0, 3.0, 3.0
redhatlinux_advanced_workstation2.1, 2.1
susesuse_linux9.3, 9.3, 10.0

…and 14 more

Timeline

References

…and 68 more

Open in Interactive Console →