xpdf and kpdf do not properly validate the "loca" table in PDF files, which allows local users to cause a denial of service (disk consumption and hang) via a PDF file with a "broken" loca table, which causes a large temporary file to be created when xpdf attempts to reconstruct the information.
CVSS Details
- CVSS 3.1 Base Score: 5.5
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade libextractorUpgrade xpdfUpgrade cupsUpgrade poppler | Jul 30, 2024 | Aug 16, 2005 |
| Freebsd | — | Upgrade gpdfUpgrade xpdfUpgrade cups-baseUpgrade kdegraphics | Dec 10, 2025 | Aug 12, 2005 |
| Gentoo Linux | — | Upgrade kde-base/kdegraphics.Upgrade kde-base/kpdf.Upgrade app-text/xpdf.Upgrade app-text/gpdf. | Oct 30, 2017 | Aug 16, 2005 |
| Ubuntu | — | Upgrade xpdf-utils | Nov 8, 2024 | Aug 16, 2005 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub