Show filters
175 Total Results
Displaying 171-175 of 175
Sort by:
Attacker Value
Unknown
CVE-2004-1125
Disclosure Date: January 10, 2005 (last updated February 22, 2025)
Buffer overflow in the Gfx::doImage function in Gfx.cc for xpdf 3.00, and other products that share code such as tetex-bin and kpdf in KDE 3.2.x to 3.2.3 and 3.3.x to 3.3.2, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted PDF file that causes the boundaries of a maskColors array to be exceeded.
0
Attacker Value
Unknown
CVE-2003-0434
Disclosure Date: July 24, 2003 (last updated February 22, 2025)
Various PDF viewers including (1) Adobe Acrobat 5.06 and (2) Xpdf 1.01 allow remote attackers to execute arbitrary commands via shell metacharacters in an embedded hyperlink.
0
Attacker Value
Unknown
CVE-2002-1384
Disclosure Date: January 02, 2003 (last updated February 22, 2025)
Integer overflow in pdftops, as used in Xpdf 2.01 and earlier, xpdf-i, and CUPS before 1.1.18, allows local users to execute arbitrary code via a ColorSpace entry with a large number of elements, as demonstrated by cups-pdf.
0
Attacker Value
Unknown
CVE-2000-0728
Disclosure Date: October 20, 2000 (last updated February 22, 2025)
xpdf PDF viewer client earlier than 0.91 allows local users to overwrite arbitrary files via a symlink attack.
0
Attacker Value
Unknown
CVE-2000-0727
Disclosure Date: October 20, 2000 (last updated February 22, 2025)
xpdf PDF viewer client earlier than 0.91 does not properly launch a web browser for embedded URL's, which allows an attacker to execute arbitrary commands via a URL that contains shell metacharacters.
0