Description
Unspecified vulnerability in certain versions of xpdf after 3.00, as used in various products including (a) pdfkit.framework, (b) gpdf, (c) pdftohtml, and (d) libextractor, has unknown impact and user-assisted attack vectors, possibly involving errors in (1) gmem.c, (2) SplashXPathScanner.cc, (3) JBIG2Stream.cc, (4) JPXStream.cc, and/or (5) Stream.cc. NOTE: this description is based on Debian advisory DSA 979, which is based on changes that were made after other vulnerabilities such as CVE-2006-0301 and CVE-2005-3624 through CVE-2005-3628 were fixed. Some of these newer fixes appear to be security-relevant, although it is not clear if they fix specific issues or are defensive in nature.
Affected products
- Debian / debian_linux3.1 – 3.1
- Debian / debian_linux3.1 – 3.1
- Debian / debian_linux3.1 – 3.1
- Debian / debian_linux3.1 – 3.1
- Debian / debian_linux3.1 – 3.1
- Debian / debian_linux3.1 – 3.1
- Debian / debian_linux3.1 – 3.1
- Debian / debian_linux3.1 – 3.1
- Debian / debian_linux3.1 – 3.1
- Debian / debian_linux3.1 – 3.1
- Debian / debian_linux3.1 – 3.1
- Debian / debian_linux3.1 – 3.1
- Debian / debian_linux3.1 – 3.1
- GNOME / gpdf2.8.2 – 2.8.2
- libextractor / libextractor0.5 – 0.5
- libextractor / libextractor0.4.2 – 0.4.2
- libextractor / libextractor0.4.1 – 0.4.1
- libextractor / libextractor0.4 – 0.4
- libextractor / libextractor0.3.11 – 0.3.11
- libextractor / libextractor0.3.9 – 0.3.9
- libextractor / libextractor0.3.8 – 0.3.8
- libextractor / libextractor0.3.7 – 0.3.7
- libextractor / libextractor0.3.6 – 0.3.6
- Xpdf / Xpdf3.0.1_pl1 – 3.0.1_pl1
- Xpdf / Xpdf3.0_pl2 – 3.0_pl2
- Xpdf / Xpdf3.0_pl3 – 3.0_pl3
- Xpdf / Xpdf1.0 – 1.0
- Xpdf / Xpdf0.92 – 0.92
- Xpdf / Xpdf0.91 – 0.91
- Xpdf / Xpdf0.90 – 0.90
- Xpdf / Xpdf0.93 – 0.93
- Xpdf / Xpdf1.0a – 1.0a
- Xpdf / Xpdf1.1 – 1.1
- Xpdf / Xpdf2.0 – 2.0
- Xpdf / Xpdf2.1 – 2.1
- Xpdf / Xpdf2.2 – 2.2
- Xpdf / Xpdf2.3 – 2.3
- Xpdf / Xpdf3.0 – 3.0
- Xpdf / Xpdf3.0.1 – 3.0.1
References
- VENDOR_ADVISORYhttp://secunia.com/advisories/19644
- VENDOR_ADVISORYhttp://www.debian.org/security/2006/dsa-979
- VENDOR_ADVISORYhttp://www.debian.org/security/2006/dsa-998
- VENDOR_ADVISORYhttp://secunia.com/advisories/19164
- VENDOR_ADVISORYhttp://security.debian.org/pool/updates/main/p/pdfkit.framework/pdfkit.framework_0.8-2sarge3.diff.gz
- VENDOR_ADVISORYhttp://secunia.com/advisories/19364
- VENDOR_ADVISORYhttp://www.debian.org/security/2006/dsa-983
- VENDOR_ADVISORYhttp://www.debian.org/security/2006/dsa-982
- VENDOR_ADVISORYhttp://secunia.com/advisories/19091
- VENDOR_ADVISORYhttp://secunia.com/advisories/19065
- MISChttp://www.osvdb.org/23834
- VENDOR_ADVISORYhttp://www.debian.org/security/2006/dsa-1019
- MISChttp://www.securityfocus.com/bid/16748
- VENDOR_ADVISORYhttp://secunia.com/advisories/18948
- VENDOR_ADVISORYhttp://www.debian.org/security/2006/dsa-984
- VENDOR_ADVISORYhttp://secunia.com/advisories/19021
- VENDOR_ADVISORYhttps://usn.ubuntu.com/270-1/