VDB

CVE-2005-3626

CVE-2005-3626 PUBLISHED CVSS 5 MEDIUM

Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial of service (crash) via a crafted FlateDecode stream that triggers a null dereference.

EPSS 9.17% · 92.8th percentile

Risk Scores

CVSS 2.0
5
EPSS Score
9.17%
92.8th percentile

Affected Products

VendorProductVersions
trustixsecure_linux2.2, 3.0, 2.0
turbolinuxturbolinux_multimedia
redhatenterprise_linux2.1, 2.1, 2.1
kdekdegraphics3.2, 3.4.3
tetextetex3.0, 1.0.7, 2.0.2
easy_software_productscups*, *, 1.1.23
libextractorlibextractor
slackwareslackware_linux10.0, 10.1, 9.0
popplerpoppler0.4.2
redhatfedora_corecore_3.0, *, core_1.0
scoopenserver5.0.7, 6.0
turbolinuxturbolinux_home
redhatenterprise_linux_desktop3.0, 4.0
turbolinuxturbolinux_personal
mandrakesoftmandrake_linux10.1, 10.2, 2006
mandrakesoftmandrake_linux_corporate_server2.1, 3.0, 3.0
turbolinuxturbolinux10, fuji
debiandebian_linux3.0, 3.0, 3.0
redhatlinux_advanced_workstation2.1, 2.1
susesuse_linux9.0, 9.0, 9.0

…and 14 more

Exploit Intelligence

…and 75 more exploits

Timeline

  • Dec 31, 2005 CVE Published
  • Feb 4, 2022 EPSS Score
  • Mar 29, 2022 EPSS Score
  • May 20, 2022 EPSS Score
  • Sep 4, 2022 EPSS Score
  • Oct 26, 2022 EPSS Score
  • Dec 18, 2022 EPSS Score
  • Feb 9, 2023 EPSS Score
  • Mar 7, 2023 EPSS Score
  • Apr 3, 2023 EPSS Score
  • Jul 17, 2023 EPSS Score
  • Sep 8, 2023 EPSS Score

References

…and 68 more

Open in Interactive Console →
$ Console Community · 100/wk Open console ›