VDB

RHSA-2003:037

RHSA-2003:037 PUBLISHED CVSS 8.600000381469727 HIGH

Integer overflow in pdftops, as used in Xpdf 2.01 and earlier, xpdf-i, and CUPS before 1.1.18, allows local users to execute arbitrary code via a ColorSpace entry with a large number of elements, as demonstrated by cups-pdf.

Risk Scores

CVSS 4.0
8.600000381469727
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N

Affected Products

VendorProductVersions
Red HatRed Hat Linux 7.0
Red HatRed Hat Linux 7.3
Red HatRed Hat Linux 6.2
Red HatRed Hat Linux 7.1
Red HatRed Hat Linux 8.0
Red HatRed Hat Linux 7.2

Timeline

  • Feb 6, 2003 CVE Published
  • Nov 21, 2025 CVE Updated
  • Aug 7, 2026 Distribution Patch
  • Aug 7, 2026 Distribution Patch
  • Aug 7, 2026 Security Advisory
  • Aug 7, 2026 Security Advisory
Open in Interactive Console →
$ Console Community · 100/wk Open console ›