CVE Database
/

CVE-2006-1244

Back to search

CVE-2006-1244

Published: Mar 15, 2006

Modified: Aug 7, 2024

PUBLISHED

Description

Unspecified vulnerability in certain versions of xpdf after 3.00, as used in various products including (a) pdfkit.framework, (b) gpdf, (c) pdftohtml, and (d) libextractor, has unknown impact and user-assisted attack vectors, possibly involving errors in (1) gmem.c, (2) SplashXPathScanner.cc, (3) JBIG2Stream.cc, (4) JPXStream.cc, and/or (5) Stream.cc. NOTE: this description is based on Debian advisory DSA 979, which is based on changes that were made after other vulnerabilities such as CVE-2006-0301 and CVE-2005-3624 through CVE-2005-3628 were fixed. Some of these newer fixes appear to be security-relevant, although it is not clear if they fix specific issues or are defensive in nature.

VendorProductVersions

n/a

n/a

affected
n/a

References

19644
third-party-advisory
x_refsource_SECUNIA
DSA-979
vendor-advisory
x_refsource_DEBIAN
DSA-998
vendor-advisory
x_refsource_DEBIAN
19164
third-party-advisory
x_refsource_SECUNIA
19364
third-party-advisory
x_refsource_SECUNIA
DSA-983
vendor-advisory
x_refsource_DEBIAN
DSA-982
vendor-advisory
x_refsource_DEBIAN
19091
third-party-advisory
x_refsource_SECUNIA
19065
third-party-advisory
x_refsource_SECUNIA
23834
vdb-entry
x_refsource_OSVDB
DSA-1019
vendor-advisory
x_refsource_DEBIAN
16748
vdb-entry
x_refsource_BID
18948
third-party-advisory
x_refsource_SECUNIA
DSA-984
vendor-advisory
x_refsource_DEBIAN
19021
third-party-advisory
x_refsource_SECUNIA
USN-270-1
vendor-advisory
x_refsource_UBUNTU

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now