← Back

CVE-2009-1181

nvd nist
Published: Apr 23, 2009Modified: Apr 23, 2026

JSON object

Loading...
4.3
Vector
AV:N/AC:M/Au:N/C:N/I:N/A:P
Exploitability: 8.6 / Impact: 2.9
Source: NVD

Description

The JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, and other products allows remote attackers to cause a denial of service (crash) via a crafted PDF file that triggers a NULL pointer dereference.

Affected (154)

Products: Foolabs: Xpdf · Glyphandcog: Xpdfreader · Poppler: Poppler · +1 more
Show all products
1 product
Xpdf
1 product
Xpdfreader
1 product
Poppler
1 product
Cups
Configuration A
34 vulnerable
Vulnerable SoftwareAffected Versions
Foolabs
Version 0.5a
Version 0.7a
Version 0.91a
Version 0.91b
Version 0.91c
Version 0.92a
Version 0.92b
Version 0.92c
Version 0.92d
Version 0.92e
Version 0.93a
Version 0.93b
Version 0.93c
Version 1.00a
Glyphandcog
Up to 3.02
Version 0.2
Version 0.3
Version 0.4
Version 0.5
Version 0.6
Version 0.7
Version 0.80
Version 0.90
Version 0.91
Version 0.92
Version 0.93
Version 1.00
Version 1.01
Version 2.00
Version 2.01
Version 2.02
Version 2.03
Version 3.00
Version 3.01
Configuration B
48 vulnerable
Vulnerable SoftwareAffected Versions
Poppler
Up to 0.10.5
Version 0.1.1
Version 0.1.2
Version 0.10.0
Version 0.10.1
Version 0.10.2
Version 0.10.3
Version 0.10.4
Version 0.1
Version 0.2.0
Version 0.3.0
Version 0.3.1
Version 0.3.2
Version 0.3.3
Version 0.4.0
Version 0.4.1
Version 0.4.2
Version 0.4.3
Version 0.4.4
Version 0.5.0
Version 0.5.1
Version 0.5.2
Version 0.5.3
Version 0.5.4
Version 0.5.90
Version 0.5.91
Version 0.5.9
Version 0.6.0
Version 0.6.1
Version 0.6.2
Version 0.6.3
Version 0.6.4
Version 0.7.0
Version 0.7.1
Version 0.7.2
Version 0.7.3
Version 0.8.0
Version 0.8.1
Version 0.8.2
Version 0.8.3
Version 0.8.4
Version 0.8.5
Version 0.8.6
Version 0.8.7
Version 0.9.0
Version 0.9.1
Version 0.9.2
Version 0.9.3
Configuration C
72 vulnerable
Vulnerable SoftwareAffected Versions
Apple
Up to 1.3.9
Version 1.1.10-1
Version 1.1.10
Version 1.1.11
Version 1.1.12
Version 1.1.13
Version 1.1.14
Version 1.1.15
Version 1.1.16
Version 1.1.17
Version 1.1.18
Version 1.1.19
Version 1.1.19 rc1
Version 1.1.19 rc2
Version 1.1.19 rc3
Version 1.1.19 rc4
Version 1.1.19 rc5
Version 1.1.1
Version 1.1.20
Version 1.1.20 rc1
Version 1.1.20 rc2
Version 1.1.20 rc3
Version 1.1.20 rc4
Version 1.1.20 rc5
Version 1.1.20 rc6
Version 1.1.21
Version 1.1.21 rc1
Version 1.1.21 rc2
Version 1.1.22
Version 1.1.22 rc1
Version 1.1.22 rc2
Version 1.1.23
Version 1.1.23 rc1
Version 1.1.2
Version 1.1.3
Version 1.1.4
Version 1.1.5-1
Version 1.1.5-2
Version 1.1.5
Version 1.1.6-1
Version 1.1.6-2
Version 1.1.6-3
Version 1.1.6
Version 1.1.7
Version 1.1.8
Version 1.1.9-1
Version 1.1.9
Version 1.1
Version 1.2.0
Version 1.2.10
Version 1.2.11
Version 1.2.12
Version 1.2.1
Version 1.2.2
Version 1.2.3
Version 1.2.4
Version 1.2.5
Version 1.2.6
Version 1.2.7
Version 1.2.8
Version 1.2.9
Version 1.3.0
Version 1.3.10
Version 1.3.11
Version 1.3.1
Version 1.3.2
Version 1.3.3
Version 1.3.4
Version 1.3.5
Version 1.3.6
Version 1.3.7
Version 1.3.8

Related CWEs

References (84)

Source: secalert@redhat.com
PatchVendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
PatchVendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Patch
Source: secalert@redhat.com
Patch
Source: secalert@redhat.com
US Government Resource
Source: secalert@redhat.com
Patch
Source: secalert@redhat.com
PatchVendor Advisory
Source: secalert@redhat.com
PatchVendor Advisory
Source: secalert@redhat.com
PatchVendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
US Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.