Buffer overflow in the Gfx::doImage function in Gfx.cc for xpdf 3.00, and other products that share code such as tetex-bin and kpdf in KDE 3.2.x to 3.2.3 and 3.3.x to 3.3.2, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted PDF file that causes the boundaries of a maskColors array to be exceeded.
CVSS Details
- CVSS 3.1 Base Score: 7.8
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade xpdfUpgrade cups | Jul 30, 2024 | Jan 10, 2005 |
| Freebsd | — | Upgrade pdftohtmlUpgrade teTeX-baseUpgrade kofficeUpgrade kdegraphicsUpgrade gpdfUpgrade cups-baseUpgrade xpdf | Dec 10, 2025 | Dec 23, 2004 |
| Gentoo Linux | — | Upgrade app-office/koffice.Upgrade app-text/xpdf.Upgrade app-text/gpdf.Upgrade app-text/pdftohtml.Upgrade net-print/cups.Upgrade app-text/tetex.Upgrade app-text/cstetex.Upgrade kde-base/kdegraphics.Upgrade app-text/ptex. | Oct 30, 2017 | Jan 10, 2005 |
| Suse | — | Upgrade cups-libs-32bitUpgrade cupsUpgrade cups-libs-x86Upgrade cups-clientUpgrade cups-libsUpgrade cups-develUpgrade cups-libs-64bit | Feb 17, 2015 | Jan 10, 2005 |
| Ubuntu | — | Upgrade cupsys-clientUpgrade xpdf-utils | Nov 8, 2024 | Jan 10, 2005 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub