← Back

CVE-2009-1182

nvd nist
Published: Apr 23, 2009Modified: Apr 23, 2026

JSON object

Loading...
7.5
Vector
AV:N/AC:L/Au:N/C:P/I:P/A:P
Exploitability: 10.0 / Impact: 6.4
Source: NVD

Description

Multiple buffer overflows in the JBIG2 MMR decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, and other products allow remote attackers to execute arbitrary code via a crafted PDF file.

Affected (154)

Products: Foolabs: Xpdf · Glyphandcog: Xpdfreader · Poppler: Poppler · +1 more
Show all products
1 product
Xpdf
1 product
Xpdfreader
1 product
Poppler
1 product
Cups
Configuration A
34 vulnerable
Vulnerable SoftwareAffected Versions
Foolabs
Version 0.5a
Version 0.7a
Version 0.91a
Version 0.91b
Version 0.91c
Version 0.92a
Version 0.92b
Version 0.92c
Version 0.92d
Version 0.92e
Version 0.93a
Version 0.93b
Version 0.93c
Version 1.00a
Glyphandcog
Up to 3.02
Version 0.2
Version 0.3
Version 0.4
Version 0.5
Version 0.6
Version 0.7
Version 0.80
Version 0.90
Version 0.91
Version 0.92
Version 0.93
Version 1.00
Version 1.01
Version 2.00
Version 2.01
Version 2.02
Version 2.03
Version 3.00
Version 3.01
Configuration B
48 vulnerable
Vulnerable SoftwareAffected Versions
Poppler
Up to 0.10.5
Version 0.1.1
Version 0.1.2
Version 0.10.0
Version 0.10.1
Version 0.10.2
Version 0.10.3
Version 0.10.4
Version 0.1
Version 0.2.0
Version 0.3.0
Version 0.3.1
Version 0.3.2
Version 0.3.3
Version 0.4.0
Version 0.4.1
Version 0.4.2
Version 0.4.3
Version 0.4.4
Version 0.5.0
Version 0.5.1
Version 0.5.2
Version 0.5.3
Version 0.5.4
Version 0.5.90
Version 0.5.91
Version 0.5.9
Version 0.6.0
Version 0.6.1
Version 0.6.2
Version 0.6.3
Version 0.6.4
Version 0.7.0
Version 0.7.1
Version 0.7.2
Version 0.7.3
Version 0.8.0
Version 0.8.1
Version 0.8.2
Version 0.8.3
Version 0.8.4
Version 0.8.5
Version 0.8.6
Version 0.8.7
Version 0.9.0
Version 0.9.1
Version 0.9.2
Version 0.9.3
Configuration C
72 vulnerable
Vulnerable SoftwareAffected Versions
Apple
Up to 1.3.9
Version 1.1.10-1
Version 1.1.10
Version 1.1.11
Version 1.1.12
Version 1.1.13
Version 1.1.14
Version 1.1.15
Version 1.1.16
Version 1.1.17
Version 1.1.18
Version 1.1.19
Version 1.1.19 rc1
Version 1.1.19 rc2
Version 1.1.19 rc3
Version 1.1.19 rc4
Version 1.1.19 rc5
Version 1.1.1
Version 1.1.20
Version 1.1.20 rc1
Version 1.1.20 rc2
Version 1.1.20 rc3
Version 1.1.20 rc4
Version 1.1.20 rc5
Version 1.1.20 rc6
Version 1.1.21
Version 1.1.21 rc1
Version 1.1.21 rc2
Version 1.1.22
Version 1.1.22 rc1
Version 1.1.22 rc2
Version 1.1.23
Version 1.1.23 rc1
Version 1.1.2
Version 1.1.3
Version 1.1.4
Version 1.1.5-1
Version 1.1.5-2
Version 1.1.5
Version 1.1.6-1
Version 1.1.6-2
Version 1.1.6-3
Version 1.1.6
Version 1.1.7
Version 1.1.8
Version 1.1.9-1
Version 1.1.9
Version 1.1
Version 1.2.0
Version 1.2.10
Version 1.2.11
Version 1.2.12
Version 1.2.1
Version 1.2.2
Version 1.2.3
Version 1.2.4
Version 1.2.5
Version 1.2.6
Version 1.2.7
Version 1.2.8
Version 1.2.9
Version 1.3.0
Version 1.3.10
Version 1.3.11
Version 1.3.1
Version 1.3.2
Version 1.3.3
Version 1.3.4
Version 1.3.5
Version 1.3.6
Version 1.3.7
Version 1.3.8

References (84)

Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
US Government Resource
Source: secalert@redhat.com
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
US Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.