Stream.cc in Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to modify memory and possibly execute arbitrary code via a DCTDecode stream with (1) a large "number of components" value that is not checked by DCTStream::readBaselineSOF or DCTStream::readProgressiveSOF, (2) a large "Huffman table index" value that is not checked by DCTStream::readHuffmanTables, and (3) certain uses of the scanInfo.numComps value by DCTStream::readScanInfo.
CVSS Details
- CVSS 3.1 Base Score: 8.4
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade popplerUpgrade cupsUpgrade xpdfUpgrade libextractor | Jul 30, 2024 | Dec 31, 2005 |
| Gentoo Linux | — | Upgrade app-text/xpdf.Upgrade app-office/koffice.Upgrade app-text/pdftohtml.Upgrade app-text/poppler.Upgrade app-text/gpdf.Upgrade app-office/kword.Upgrade kde-base/kdegraphics.Upgrade kde-base/kpdf.Upgrade media-libs/libextractor. | Oct 30, 2017 | Dec 31, 2005 |
| Suse | — | Upgrade cupsUpgrade libcups2Upgrade cups-ddkUpgrade cups-configUpgrade cups-develUpgrade libcupsimage2Upgrade cups-client | Sep 1, 2026 | Jun 28, 2013 |
| Ubuntu | — | Upgrade cupsysUpgrade kwordUpgrade xpdf-utils | Nov 8, 2024 | Dec 31, 2005 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub