Back to search
CVE-2009-1187
Published: Apr 23, 2009
Modified: Aug 7, 2024
PUBLISHED
Description
Integer overflow in the JBIG2 decoding feature in Poppler before 0.10.6 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via vectors related to CairoOutputDev (CairoOutputDev.cc).
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
http://bugs.gentoo.org/show_bug.cgi?id=263028#c16
x_refsource_CONFIRM
https://bugs.launchpad.net/ubuntu/+source/poppler/+bug/361875
x_refsource_CONFIRM
35064
third-party-advisory
x_refsource_SECUNIA
FEDORA-2009-6972
vendor-advisory
x_refsource_FEDORA
poppler-jbig2-cairooutputdev-code-excution(50184)
vdb-entry
x_refsource_XF
35618
third-party-advisory
x_refsource_SECUNIA
RHSA-2009:0480
vendor-advisory
x_refsource_REDHAT
http://poppler.freedesktop.org/releases.html
x_refsource_CONFIRM
34568
vdb-entry
x_refsource_BID
MDVSA-2011:175
vendor-advisory
x_refsource_MANDRIVA
VU#196617
third-party-advisory
x_refsource_CERT-VN
ADV-2010-1040
vdb-entry
x_refsource_VUPEN
FEDORA-2009-6982
vendor-advisory
x_refsource_FEDORA
http://wiki.rpath.com/Advisories:rPSA-2009-0059
x_refsource_CONFIRM
MDVSA-2010:087
vendor-advisory
x_refsource_MANDRIVA
ADV-2009-1076
vdb-entry
x_refsource_VUPEN
oval:org.mitre.oval:def:10292
vdb-entry
signature
x_refsource_OVAL
20090417 rPSA-2009-0059-1 poppler
mailing-list
x_refsource_BUGTRAQ
FEDORA-2009-6973
vendor-advisory
x_refsource_FEDORA
34746
third-party-advisory
x_refsource_SECUNIA
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now