Stream.cc in Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to modify memory and possibly execute arbitrary code via a DCTDecode stream with (1) a large "number of components" value that is not checked by DCTStream::readBaselineSOF or DCTStream::readProgressiveSOF, (2) a large "Huffman table index" value that is not checked by DCTStream::readHuffmanTables, and (3) certain uses of the scanInfo.numComps value by DCTStream::readScanInfo.
CVSS Details
- CVSS 3.1 Base Score: 8.4
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade cupsUpgrade xpdfUpgrade libextractorUpgrade poppler | Jul 30, 2024 | Dec 31, 2005 |
| Gentoo Linux | — | Upgrade app-text/pdftohtml.Upgrade app-office/kword.Upgrade app-office/koffice.Upgrade app-text/gpdf.Upgrade app-text/xpdf.Upgrade app-text/poppler.Upgrade kde-base/kpdf.Upgrade kde-base/kdegraphics.Upgrade media-libs/libextractor. | Oct 30, 2017 | Dec 31, 2005 |
| Suse | — | Upgrade cups-ddkUpgrade cups-configUpgrade cups-develUpgrade libcups2Upgrade libcupsimage2Upgrade cupsUpgrade cups-client | Sep 1, 2026 | Jun 28, 2013 |
| Ubuntu | — | Upgrade cupsysUpgrade xpdf-utilsUpgrade kword | Nov 8, 2024 | Dec 31, 2005 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub