← Back

CVE-2010-1440

nvd nist
Published: May 7, 2010Modified: Apr 29, 2026

JSON object

Loading...
6.8
Vector
AV:N/AC:M/Au:N/C:P/I:P/A:P
Exploitability: 8.6 / Impact: 6.4
Source: NVD

Description

Multiple integer overflows in dvipsk/dospecial.c in dvips in TeX Live 2009 and earlier, and teTeX, allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a special command in a DVI file, related to the (1) predospecial and (2) bbdospecial functions, a different vulnerability than CVE-2010-0739.

Affected (13)

Products: Tug: Tetex, Tex Live
2 products
Tetex
Tex Live
Configuration A
13 vulnerable
Vulnerable SoftwareAffected Versions
All versions
Tug
Up to 2009
Version 1996
Version 1998
Version 1999
Version 2000
Version 2001
Version 2002
Version 2003
Version 2004
Version 2005
Version 2007
Version 2008

Related CWEs

Timeline

No history available yet.