OpenBSD VuXML: Documenting security issues in the OpenBSD Ports & Packages Collection

xpdf -- buffer overflow vunerability

Affected packages
xpdf < 3.00p2

Details

VuXML ID 9317ac06-5441-11d9-8ad2-00065bd5b0b6
Discovery 2004-12-21
Entry 2004-12-22

iDEFENSE reports:

Remote exploitation of a buffer overflow vulnerability in the xpdf PDF viewer, as included in multiple Linux distributions, could allow attackers to execute arbitrary code as the user viewing a PDF file. The offending code can be found in the Gfx::doImage() function in the source file xpdf/Gfx.cc.

References

URL http://www.idefense.com/application/poi/display?id=172&type=vulnerabilities&flashstatus=false